2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2572 | — | — | 0.7% | Jul 22, 2009 | Cross-site request forgery (CSRF) vulnerability in the Fivestar module 5.x-1.x before 5.x-1.14 and 6.x-1.x before 6.x-1.... |
| CVE-2009-2571 | — | — | 1.5% | Jul 22, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in VerliAdmin 0.3.7 and 0.3.8 allow remote attackers to... |
| CVE-2009-2570 | — | — | 11.9% | Jul 22, 2009 | Stack-based buffer overflow in the Symantec.FaxViewerControl.1 ActiveX control in WinFax\DCCFAXVW.DLL in Symantec WinFax... |
| CVE-2009-2569 | — | — | 1.8% | Jul 22, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Verlihub Control Panel (VHCP) 1.7e allow remote attackers to inje... |
| CVE-2009-2568 | — | — | 6.2% | Jul 22, 2009 | Stack-based buffer overflow in Sorinara Streaming Audio Player (SAP) 0.9 allows remote attackers to execute arbitrary co... |
| CVE-2009-2567 | — | — | 0.9% | Jul 22, 2009 | SQL injection vulnerability in the Almond Classifieds (com_aclassf) component 5.6.2 for Joomla! allows remote attackers ... |
| CVE-2009-2566 | — | — | 31.1% | Jul 21, 2009 | Stack-based buffer overflow in TFM MMPlayer 2.0, and possibly 2.0.0.30, allows remote attackers to execute arbitrary cod... |
| CVE-2009-2565 | — | — | 1.1% | Jul 21, 2009 | Cross-site scripting (XSS) vulnerability in Perl CGI's By Mrs. Shiromuku shiromuku(fs6)DIARY 2.40 allows remote attacker... |
| CVE-2009-2564 | — | — | 5.6% | Jul 21, 2009 | NOS Microsystems getPlus Download Manager, as used in Adobe Reader 1.6.2.36 and possibly other versions, Corel getPlus D... |
| CVE-2009-2563 | — | — | 2.6% | Jul 21, 2009 | Unspecified vulnerability in the Infiniband dissector in Wireshark 1.0.6 through 1.2.0, when running on unspecified plat... |
| CVE-2009-2562 | — | — | 2.9% | Jul 21, 2009 | Unspecified vulnerability in the AFS dissector in Wireshark 0.9.2 through 1.2.0 allows remote attackers to cause a denia... |
| CVE-2009-2561 | — | — | 1.9% | Jul 21, 2009 | Unspecified vulnerability in the sFlow dissector in Wireshark 1.2.0 allows remote attackers to cause a denial of service... |
| CVE-2009-2560 | — | — | 2.0% | Jul 21, 2009 | Multiple unspecified vulnerabilities in Wireshark 1.2.0 allow remote attackers to cause a denial of service (application... |
| CVE-2009-2559 | — | — | 2.2% | Jul 21, 2009 | Buffer overflow in the IPMI dissector in Wireshark 1.2.0 allows remote attackers to cause a denial of service (crash) vi... |
| CVE-2009-2558 | — | — | 2.4% | Jul 21, 2009 | system/message.php in Admin News Tools 2.5 does not properly restrict access, which allows remote attackers to post news... |
| CVE-2009-2557 | — | — | 6.8% | Jul 21, 2009 | Directory traversal vulnerability in system/download.php in Admin News Tools 2.5 allows remote attackers to read arbitra... |
| CVE-2009-2556 | — | — | 1.6% | Jul 21, 2009 | Google Chrome before 2.0.172.37 allows attackers to leverage renderer access to cause a denial of service (memory corrup... |
| CVE-2009-2555 | — | — | 3.4% | Jul 21, 2009 | Heap-based buffer overflow in src/jsregexp.cc in Google V8 before 1.1.10.14, as used in Google Chrome before 2.0.172.37,... |
| CVE-2009-2554 | — | — | 0.9% | Jul 20, 2009 | SQL injection vulnerability in the search method in jobline.class.php in Jobline (com_jobline) 1.1.2.2, 1.3.1, and possi... |
| CVE-2009-2553 | — | — | 2.0% | Jul 20, 2009 | Multiple SQL injection vulnerabilities in comments.php in Super Simple Blog Script 2.5.4, when magic_quotes_gpc is disab... |
| CVE-2009-2552 | — | — | 2.0% | Jul 20, 2009 | Multiple directory traversal vulnerabilities in comments.php in Super Simple Blog Script 2.5.4 allow remote attackers to... |
| CVE-2009-2551 | — | — | 1.5% | Jul 20, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in ScriptsEz Easy Image Downloader allow remote attackers to inject ... |
| CVE-2009-2550 | — | — | 8.7% | Jul 20, 2009 | Stack-based buffer overflow in Hamster Audio Player 0.3a allows remote attackers to execute arbitrary code via a long st... |
| CVE-2009-2549 | — | — | 1.8% | Jul 20, 2009 | Armed Assault (aka ArmA) 1.14 and earlier, and 1.16 beta, and Armed Assault II 1.02 and earlier allows remote attackers ... |
| CVE-2009-2548 | — | — | 4.4% | Jul 20, 2009 | Format string vulnerability in Armed Assault (aka ArmA) 1.14 and earlier, and 1.16 beta, and Armed Assault II 1.02 and e... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now