2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

CVE IDSeverityCVSSDescription
CVE-2009-2612——SQL injection vulnerability in login.aspx in ProSMDR allows remote attackers to execute arbitrary SQL commands via the t...
CVE-2009-2611——Directory traversal vulnerability in infusions/last_seen_users_panel/last_seen_users_panel.php in MyFusion (aka MyF) 6 B...
CVE-2009-2610——Cross-site scripting (XSS) vulnerability in the Links Related module in the Links Package 5.x before 5.x-1.13 and 6.x be...
CVE-2009-2609——SQL injection vulnerability in the amoCourse (com_amocourse) component for Joomla! allows remote attackers to execute ar...
CVE-2009-2608——Multiple SQL injection vulnerabilities in PHP Address Book 4.0.x allow remote attackers to execute arbitrary SQL command...
CVE-2009-2607——SQL injection vulnerability in the com_pinboard component for Joomla! allows remote attackers to execute arbitrary SQL c...
CVE-2009-2606——ASP Football Pool 2.3 stores sensitive information under the web root with insufficient access control, which allows rem...
CVE-2009-2605——Multiple SQL injection vulnerabilities in adminquery.php in Traidnt Up 2.0 allow remote attackers to execute arbitrary S...
CVE-2009-2604——Multiple SQL injection vulnerabilities in adminlogin.asp in Zen Help Desk 2.1 allow remote attackers to execute arbitrar...
CVE-2009-2603——Multiple SQL injection vulnerabilities in index.php in Escon SupportPortal Pro 3.0 allow remote attackers to execute arb...
CVE-2009-2602——R2 Newsletter Lite, Pro, and Stats stores sensitive information under the web root with insufficient access control, whi...
CVE-2009-2601——SQL injection vulnerability in the Joomlaequipment (aka JUser or com_juser) component 2.0.4 for Joomla! allows remote at...
CVE-2009-2600——Multiple directory traversal vulnerabilities in view.php in Webboard 2.90 beta and earlier allow remote attackers to rea...
CVE-2009-2599——SQL injection vulnerability in index.php in RadCLASSIFIEDS Gold 2.0 allows remote attackers to execute arbitrary SQL com...
CVE-2009-2598——Multiple SQL injection vulnerabilities in Online Grades & Attendance 3.2.6 and earlier allow (1) remote attackers to exe...
CVE-2009-2597——The Sun Java System (SJS) Access Manager Policy Agent module 2.2 for SJS Web Proxy Server 4.0 allows remote attackers to...
CVE-2009-2596——Unspecified vulnerability in the Solaris Auditing subsystem in Sun Solaris 9 and 10 and OpenSolaris before snv_121, when...
CVE-2009-2595——Cross-site scripting (XSS) vulnerability in productSearch.html in Censura 2.0.4 and 2.1.0 allows remote attackers to inj...
CVE-2009-2594——Cross-site scripting (XSS) vulnerability in censura.php in Censura 1.16.04 allows remote attackers to inject arbitrary w...
CVE-2009-2593——SQL injection vulnerability in censura.php in Censura 1.16.04 allows remote attackers to execute arbitrary SQL commands ...
CVE-2009-2592——SQL injection vulnerability in guestbook.php in PHPJunkYard GBook 1.6 allows remote attackers to execute arbitrary SQL c...
CVE-2009-2591——SQL injection vulnerability in the MyAnnonces module for E-Xoopport 3.1 allows remote attackers to execute arbitrary SQL...
CVE-2009-2590——SQL injection vulnerability in showcategory.php in Hutscripts PHP Website Script allows remote attackers to execute arbi...
CVE-2009-2589——Multiple cross-site scripting (XSS) vulnerabilities in Hutscripts PHP Website Script allow remote attackers to inject ar...
CVE-2009-2588——Multiple cross-site scripting (XSS) vulnerabilities in Hotscripts Type PHP Clone Script allow remote attackers to inject...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now