2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2387 | — | — | 0.3% | Jul 9, 2009 | Unspecified vulnerability in the proc filesystem in Sun OpenSolaris snv_49 through snv_109 allows local users to cause a... |
| CVE-2009-2385 | — | — | 1.0% | Jul 8, 2009 | SQL injection vulnerability in the awardsMembers function in Sources/Profile.php in the Member Awards component 1.0.2 fo... |
| CVE-2009-2384 | — | — | 5.9% | Jul 8, 2009 | Buffer overflow in amp.exe in Brothersoft PEamp 1.02b allows user-assisted remote attackers to execute arbitrary code vi... |
| CVE-2009-2383 | — | — | 2.8% | Jul 8, 2009 | SQL injection vulnerability in BTE_RW_webajax.php in the Related Sites plugin 2.1 for WordPress allows remote attackers ... |
| CVE-2009-2382 | CRITICAL | 9.8 | 6.2% | Jul 8, 2009 | admin.php in phpMyBlockchecker 1.0.0055 allows remote attackers to bypass authentication and gain administrative access ... |
| CVE-2009-2381 | — | — | 0.9% | Jul 8, 2009 | Gizmo 3.1.0.79 on Linux does not verify a server's SSL certificate, which allows remote servers to obtain the credential... |
| CVE-2009-2380 | — | — | 1.1% | Jul 8, 2009 | Cross-site scripting (XSS) vulnerability in includes/functions.php in 4images 1.7 through 1.7.7 allows remote attackers ... |
| CVE-2009-2379 | — | — | 5.6% | Jul 8, 2009 | Directory traversal vulnerability in public/index.php in BIGACE Web CMS 2.6 allows remote attackers to include and execu... |
| CVE-2009-2378 | — | — | 2.1% | Jul 8, 2009 | PHP remote file inclusion vulnerability in formmailer.admin.inc.php in Jax FormMailer 3.0.0 allows remote attackers to e... |
| CVE-2009-2377 | — | — | 1.9% | Jul 8, 2009 | Buffer overflow in the Avax Vector ActiveX control in avPreview.ocx in AVAX-software Avax Vector ActiveX 1.3 allows remo... |
| CVE-2009-2376 | — | — | 1.1% | Jul 8, 2009 | Cross-site scripting (XSS) vulnerability in the Html::textarea function in application/libraries/Html.php in TangoCMS 2.... |
| CVE-2009-2375 | — | — | 5.1% | Jul 8, 2009 | Stack-based buffer overflow in Photo DVD Maker 8.02, and possibly earlier versions, allows remote attackers to execute a... |
| CVE-2009-2374 | — | — | 1.4% | Jul 8, 2009 | Drupal 5.x before 5.19 and 6.x before 6.13 does not properly sanitize failed login attempts for pages that contain a sor... |
| CVE-2009-2373 | — | — | 1.8% | Jul 8, 2009 | Cross-site scripting (XSS) vulnerability in the Forum module in Drupal 6.x before 6.13 allows remote attackers to inject... |
| CVE-2009-2372 | — | — | 2.3% | Jul 8, 2009 | Drupal 6.x before 6.13 does not prevent users from modifying user signatures after the associated comment format has bee... |
| CVE-2009-2371 | — | — | 1.1% | Jul 8, 2009 | Advanced Forum 6.x before 6.x-1.1, a module for Drupal, does not prevent users from modifying user signatures after the ... |
| CVE-2009-2370 | — | — | 1.3% | Jul 8, 2009 | Cross-site scripting (XSS) vulnerability in Advanced Forum 5.x before 5.x-1.1 and 6.x before 6.x-1.1, a module for Drupa... |
| CVE-2009-2369 | — | — | 2.8% | Jul 8, 2009 | Integer overflow in the wxImage::Create function in src/common/image.cpp in wxWidgets 2.8.10 allows attackers to cause a... |
| CVE-2009-2368 | — | — | 1.4% | Jul 8, 2009 | Unspecified vulnerability in Socks Server 5 before 3.7.8-8 has unknown impact and attack vectors. |
| CVE-2009-2367 | CRITICAL | 9.8 | 23.2% | Jul 8, 2009 | cgi-bin/makecgi-pro in Iomega StorCenter Pro generates predictable session IDs, which allows remote attackers to hijack ... |
| CVE-2009-2366 | — | — | 1.1% | Jul 8, 2009 | SQL injection vulnerability in login.asp in DataCheck Solutions ForumPal FE 1.1 and ForumPal 1.5 allows remote attackers... |
| CVE-2009-2365 | — | — | 1.0% | Jul 8, 2009 | SQL injection vulnerability in login.asp in DataCheck Solutions GalleryPal FE 1.5 allows remote attackers to execute arb... |
| CVE-2009-2364 | — | — | 10.1% | Jul 8, 2009 | Stack-based buffer overflow in Mp3-Nator 2.0 allows remote attackers to execute arbitrary code via (1) a long string in ... |
| CVE-2009-2363 | — | — | 6.1% | Jul 8, 2009 | Stack-based buffer overflow in KUDRSOFT AudioPLUS 2.00.215 allows remote attackers to execute arbitrary code via a .pls ... |
| CVE-2009-2362 | — | — | 7.2% | Jul 8, 2009 | Stack-based buffer overflow in KUDRSOFT AudioPLUS 2.0.0.215 allows remote attackers to execute arbitrary code via a long... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now