2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2487 | — | — | 2.9% | Jul 16, 2009 | Use-after-free vulnerability in the frpr_icmp function in the ipfilter (aka IP Filter) subsystem in Sun Solaris 10, and ... |
| CVE-2009-2486 | — | — | 2.0% | Jul 16, 2009 | Unspecified vulnerability in the SCTP implementation in Sun Solaris 10, and OpenSolaris before snv_120, allows remote at... |
| CVE-2009-2485 | — | — | 58.1% | Jul 16, 2009 | Stack-based buffer overflow in HT-MP3Player 1.0 allows remote attackers to execute arbitrary code via a long string in a... |
| CVE-2009-2484 | — | — | 35.1% | Jul 16, 2009 | Stack-based buffer overflow in the Win32AddConnection function in modules/access/smb.c in VideoLAN VLC media player 0.9.... |
| CVE-2009-2483 | — | — | 0.4% | Jul 16, 2009 | libprop/prop_object.c in proplib in NetBSD 4.0 and 4.0.1 allows local users to cause a denial of service (NULL pointer d... |
| CVE-2009-2482 | — | — | 0.3% | Jul 16, 2009 | The pam_unix module in OpenPAM in NetBSD 4.0 before 4.0.2 and 5.0 before 5.0.1 allows local users to change the current ... |
| CVE-2009-2481 | — | — | 1.2% | Jul 16, 2009 | mt-wizard.cgi in Six Apart Movable Type before 4.261, when global templates are not initialized, allows remote attackers... |
| CVE-2009-2480 | — | — | 1.3% | Jul 16, 2009 | Cross-site scripting (XSS) vulnerability in mt-wizard.cgi in Six Apart Movable Type 4.24, and 4.25 when global templates... |
| CVE-2009-2479 | — | — | 12.1% | Jul 16, 2009 | Mozilla Firefox 3.0.x, 3.5, and 3.5.1 on Windows allows remote attackers to cause a denial of service (uncaught exceptio... |
| CVE-2009-2478 | — | — | 7.8% | Jul 16, 2009 | Mozilla Firefox 3.5 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash... |
| CVE-2009-2048 | — | — | 1.0% | Jul 16, 2009 | Cross-site scripting (XSS) vulnerability in the Administration interface in Cisco Customer Response Solutions (CRS) befo... |
| CVE-2009-2047 | — | — | 2.4% | Jul 16, 2009 | Directory traversal vulnerability in the Administration interface in Cisco Customer Response Solutions (CRS) before 7.0(... |
| CVE-2009-1895 | — | — | 0.4% | Jul 16, 2009 | The personality subsystem in the Linux kernel before 2.6.31-rc3 has a PER_CLEAR_ON_SETID setting that does not clear the... |
| CVE-2009-2477 | — | — | 42.7% | Jul 15, 2009 | js/src/jstracer.cpp in the Just-in-time (JIT) JavaScript compiler (aka TraceMonkey) in Mozilla Firefox 3.5 before 3.5.1 ... |
| CVE-2009-1542 | — | — | 8.0% | Jul 15, 2009 | The Virtual Machine Monitor (VMM) in Microsoft Virtual PC 2004 SP1, 2007, and 2007 SP1, and Microsoft Virtual Server 200... |
| CVE-2009-1539 | — | — | 25.8% | Jul 15, 2009 | The QuickTime Movie Parser Filter in quartz.dll in DirectShow in Microsoft DirectX 7.0 through 9.0c on Windows 2000 SP4,... |
| CVE-2009-1538 | — | — | 26.8% | Jul 15, 2009 | The QuickTime Movie Parser Filter in quartz.dll in DirectShow in Microsoft DirectX 7.0 through 9.0c on Windows 2000 SP4,... |
| CVE-2009-1136 | — | — | 62.0% | Jul 15, 2009 | The Microsoft Office Web Components Spreadsheet ActiveX control (aka OWC10 or OWC11), as distributed in Office XP SP3 an... |
| CVE-2009-1135 | — | — | 26.5% | Jul 15, 2009 | Microsoft Internet Security and Acceleration (ISA) Server 2006 Gold and SP1, when Radius OTP is enabled, uses the HTTP-B... |
| CVE-2009-0566 | — | — | 28.9% | Jul 15, 2009 | Microsoft Office Publisher 2007 SP1 does not properly calculate object handler data for Publisher files, which allows re... |
| CVE-2009-0232 | — | — | 25.8% | Jul 15, 2009 | Integer overflow in the Embedded OpenType (EOT) Font Engine in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 S... |
| CVE-2009-0231 | HIGH | 8.8 | 37.5% | Jul 15, 2009 | The Embedded OpenType (EOT) Font Engine (T2EMBED.DLL) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vi... |
| CVE-2009-1989 | — | — | 1.5% | Jul 14, 2009 | Unspecified vulnerability in the PeopleSoft Enterprise FMS component in Oracle PeopleSoft Enterprise and JD Edwards Ente... |
| CVE-2009-1988 | — | — | 1.2% | Jul 14, 2009 | Unspecified vulnerability in the PeopleSoft Enterprise HRMS eProfile Manager component in Oracle PeopleSoft Enterprise a... |
| CVE-2009-1987 | — | — | 1.5% | Jul 14, 2009 | Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools - Enterprise Portal component in Oracle PeopleSoft En... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now