2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

CVE IDSeverityCVSSDescription
CVE-2009-2612SQL injection vulnerability in login.aspx in ProSMDR allows remote attackers to execute arbitrary SQL commands via the t...
CVE-2009-2611Directory traversal vulnerability in infusions/last_seen_users_panel/last_seen_users_panel.php in MyFusion (aka MyF) 6 B...
CVE-2009-2610Cross-site scripting (XSS) vulnerability in the Links Related module in the Links Package 5.x before 5.x-1.13 and 6.x be...
CVE-2009-2609SQL injection vulnerability in the amoCourse (com_amocourse) component for Joomla! allows remote attackers to execute ar...
CVE-2009-2608Multiple SQL injection vulnerabilities in PHP Address Book 4.0.x allow remote attackers to execute arbitrary SQL command...
CVE-2009-2607SQL injection vulnerability in the com_pinboard component for Joomla! allows remote attackers to execute arbitrary SQL c...
CVE-2009-2606ASP Football Pool 2.3 stores sensitive information under the web root with insufficient access control, which allows rem...
CVE-2009-2605Multiple SQL injection vulnerabilities in adminquery.php in Traidnt Up 2.0 allow remote attackers to execute arbitrary S...
CVE-2009-2604Multiple SQL injection vulnerabilities in adminlogin.asp in Zen Help Desk 2.1 allow remote attackers to execute arbitrar...
CVE-2009-2603Multiple SQL injection vulnerabilities in index.php in Escon SupportPortal Pro 3.0 allow remote attackers to execute arb...
CVE-2009-2602R2 Newsletter Lite, Pro, and Stats stores sensitive information under the web root with insufficient access control, whi...
CVE-2009-2601SQL injection vulnerability in the Joomlaequipment (aka JUser or com_juser) component 2.0.4 for Joomla! allows remote at...
CVE-2009-2600Multiple directory traversal vulnerabilities in view.php in Webboard 2.90 beta and earlier allow remote attackers to rea...
CVE-2009-2599SQL injection vulnerability in index.php in RadCLASSIFIEDS Gold 2.0 allows remote attackers to execute arbitrary SQL com...
CVE-2009-2598Multiple SQL injection vulnerabilities in Online Grades & Attendance 3.2.6 and earlier allow (1) remote attackers to exe...
CVE-2009-2597The Sun Java System (SJS) Access Manager Policy Agent module 2.2 for SJS Web Proxy Server 4.0 allows remote attackers to...
CVE-2009-2596Unspecified vulnerability in the Solaris Auditing subsystem in Sun Solaris 9 and 10 and OpenSolaris before snv_121, when...
CVE-2009-2595Cross-site scripting (XSS) vulnerability in productSearch.html in Censura 2.0.4 and 2.1.0 allows remote attackers to inj...
CVE-2009-2594Cross-site scripting (XSS) vulnerability in censura.php in Censura 1.16.04 allows remote attackers to inject arbitrary w...
CVE-2009-2593SQL injection vulnerability in censura.php in Censura 1.16.04 allows remote attackers to execute arbitrary SQL commands ...
CVE-2009-2592SQL injection vulnerability in guestbook.php in PHPJunkYard GBook 1.6 allows remote attackers to execute arbitrary SQL c...
CVE-2009-2591SQL injection vulnerability in the MyAnnonces module for E-Xoopport 3.1 allows remote attackers to execute arbitrary SQL...
CVE-2009-2590SQL injection vulnerability in showcategory.php in Hutscripts PHP Website Script allows remote attackers to execute arbi...
CVE-2009-2589Multiple cross-site scripting (XSS) vulnerabilities in Hutscripts PHP Website Script allow remote attackers to inject ar...
CVE-2009-2588Multiple cross-site scripting (XSS) vulnerabilities in Hotscripts Type PHP Clone Script allow remote attackers to inject...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now