2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2400 | — | — | 1.0% | Jul 9, 2009 | SQL injection vulnerability in the PHP (com_php) component for Joomla! allows remote attackers to execute arbitrary SQL ... |
| CVE-2009-2399 | — | — | 1.7% | Jul 9, 2009 | PHP remote file inclusion vulnerability in dm-albums/template/album.php in DM FileManager 3.9.4, when register_globals i... |
| CVE-2009-2398 | — | — | 2.8% | Jul 9, 2009 | Directory traversal vulnerability in test/index.php in PHP-Sugar 0.80 allows remote attackers to read arbitrary files vi... |
| CVE-2009-2397 | — | — | 2.9% | Jul 9, 2009 | Directory traversal vulnerability in download.php in Audio Article Directory allows remote attackers to read arbitrary f... |
| CVE-2009-2396 | — | — | 5.9% | Jul 9, 2009 | PHP remote file inclusion vulnerability in template/album.php in DM Albums 1.9.2, as used standalone or as a WordPress p... |
| CVE-2009-2395 | — | — | 3.0% | Jul 9, 2009 | SQL injection vulnerability in the K2 (com_k2) component 1.0.1 Beta and earlier for Joomla! allows remote attackers to e... |
| CVE-2009-2394 | — | — | 0.9% | Jul 9, 2009 | SQL injection vulnerability in cat.php in SMSPages 1.0 in Mr.Saphp Arabic Script Mobile (aka Messages Library) 2.0 allow... |
| CVE-2009-2393 | — | — | 2.1% | Jul 9, 2009 | admin/index.php in Virtuenetz Virtue Online Test Generator does not require administrative privileges, which allows remo... |
| CVE-2009-2392 | — | — | 1.0% | Jul 9, 2009 | SQL injection vulnerability in text.php in Virtuenetz Virtue Online Test Generator allows remote attackers to execute ar... |
| CVE-2009-2391 | — | — | 1.5% | Jul 9, 2009 | Cross-site scripting (XSS) vulnerability in text.php in Virtuenetz Virtue Online Test Generator allows remote attackers ... |
| CVE-2009-2390 | — | — | 1.0% | Jul 9, 2009 | SQL injection vulnerability in the BookFlip (com_bookflip) component 2.1 for Joomla! allows remote attackers to execute ... |
| CVE-2009-2389 | — | — | 0.9% | Jul 9, 2009 | Multiple SQL injection vulnerabilities in newsscript.php in USOLVED NEWSolved 1.1.6, when magic_quotes_gpc is disabled, ... |
| CVE-2009-2388 | — | — | 0.8% | Jul 9, 2009 | SQL injection vulnerability in admin/index.php in Opial 1.0 allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2009-2387 | — | — | 0.3% | Jul 9, 2009 | Unspecified vulnerability in the proc filesystem in Sun OpenSolaris snv_49 through snv_109 allows local users to cause a... |
| CVE-2009-2385 | — | — | 1.0% | Jul 8, 2009 | SQL injection vulnerability in the awardsMembers function in Sources/Profile.php in the Member Awards component 1.0.2 fo... |
| CVE-2009-2384 | — | — | 5.9% | Jul 8, 2009 | Buffer overflow in amp.exe in Brothersoft PEamp 1.02b allows user-assisted remote attackers to execute arbitrary code vi... |
| CVE-2009-2383 | — | — | 2.8% | Jul 8, 2009 | SQL injection vulnerability in BTE_RW_webajax.php in the Related Sites plugin 2.1 for WordPress allows remote attackers ... |
| CVE-2009-2381 | — | — | 0.9% | Jul 8, 2009 | Gizmo 3.1.0.79 on Linux does not verify a server's SSL certificate, which allows remote servers to obtain the credential... |
| CVE-2009-2380 | — | — | 1.1% | Jul 8, 2009 | Cross-site scripting (XSS) vulnerability in includes/functions.php in 4images 1.7 through 1.7.7 allows remote attackers ... |
| CVE-2009-2379 | — | — | 5.6% | Jul 8, 2009 | Directory traversal vulnerability in public/index.php in BIGACE Web CMS 2.6 allows remote attackers to include and execu... |
| CVE-2009-2378 | — | — | 2.1% | Jul 8, 2009 | PHP remote file inclusion vulnerability in formmailer.admin.inc.php in Jax FormMailer 3.0.0 allows remote attackers to e... |
| CVE-2009-2377 | — | — | 1.9% | Jul 8, 2009 | Buffer overflow in the Avax Vector ActiveX control in avPreview.ocx in AVAX-software Avax Vector ActiveX 1.3 allows remo... |
| CVE-2009-2376 | — | — | 1.1% | Jul 8, 2009 | Cross-site scripting (XSS) vulnerability in the Html::textarea function in application/libraries/Html.php in TangoCMS 2.... |
| CVE-2009-2375 | — | — | 5.1% | Jul 8, 2009 | Stack-based buffer overflow in Photo DVD Maker 8.02, and possibly earlier versions, allows remote attackers to execute a... |
| CVE-2009-2374 | — | — | 1.4% | Jul 8, 2009 | Drupal 5.x before 5.19 and 6.x before 6.13 does not properly sanitize failed login attempts for pages that contain a sor... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now