2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2221 | — | — | 1.0% | Jun 26, 2009 | Cross-site scripting (XSS) vulnerability in PHP-I-BOARD 1.2 and earlier allows remote attackers to inject arbitrary web ... |
| CVE-2009-2220 | — | — | 2.0% | Jun 26, 2009 | Multiple directory traversal vulnerabilities in Tribiq CMS 5.0.12c, when register_globals is enabled and magic_quotes_gp... |
| CVE-2009-2219 | — | — | 1.2% | Jun 25, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in phpCollegeExchange 0.1.5c allow remote attackers to inject arbitr... |
| CVE-2009-2218 | — | — | 1.6% | Jun 25, 2009 | Multiple PHP remote file inclusion vulnerabilities in phpCollegeExchange 0.1.5c, when register_globals is enabled, allow... |
| CVE-2009-2217 | — | — | 1.2% | Jun 25, 2009 | Cross-site scripting (XSS) vulnerability in NBBC before 1.4.2 allows remote attackers to inject arbitrary web script or ... |
| CVE-2009-2216 | MEDIUM | 6.1 | 1.5% | Jun 25, 2009 | Cross-site scripting (XSS) vulnerability in CMD_REDIRECT in DirectAdmin 1.33.6 and earlier allows remote attackers to in... |
| CVE-2009-2215 | — | — | 0.8% | Jun 25, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in URD before 0.6.2 allow remote attackers to inject arbitrary web s... |
| CVE-2009-2214 | — | — | 1.7% | Jun 25, 2009 | The Secure Gateway service in Citrix Secure Gateway 3.1 and earlier allows remote attackers to cause a denial of service... |
| CVE-2009-2213 | MEDIUM | 6.5 | 2.0% | Jun 25, 2009 | The default configuration of the Security global settings on the Citrix NetScaler Access Gateway appliance with Enterpri... |
| CVE-2009-2212 | — | — | 1.0% | Jun 25, 2009 | The CQWeb server in IBM Rational ClearQuest 7.0.0 before 7.0.0.6 and 7.0.1 before 7.0.1.5 allows attackers to discover a... |
| CVE-2009-2211 | — | — | 1.6% | Jun 25, 2009 | Cross-site scripting (XSS) vulnerability in the CQWeb server in IBM Rational ClearQuest 7.0.0 before 7.0.0.6 and 7.0.1 b... |
| CVE-2009-2210 | — | — | 3.8% | Jun 25, 2009 | Mozilla Thunderbird before 2.0.0.22 and SeaMonkey before 1.1.17 allow remote attackers to cause a denial of service (app... |
| CVE-2009-1203 | — | — | 3.8% | Jun 25, 2009 | WebVPN on the Cisco Adaptive Security Appliances (ASA) device with software 8.0(4), 8.1.2, and 8.2.1 does not properly d... |
| CVE-2009-1202 | — | — | 2.0% | Jun 25, 2009 | WebVPN on the Cisco Adaptive Security Appliances (ASA) device with software 8.0(4), 8.1.2, and 8.2.1 allows remote attac... |
| CVE-2009-1201 | — | — | 8.8% | Jun 25, 2009 | Eval injection vulnerability in the csco_wrap_js function in /+CSCOL+/cte.js in WebVPN on the Cisco Adaptive Security Ap... |
| CVE-2009-2209 | — | — | 1.0% | Jun 25, 2009 | SQL injection vulnerability in rscms_mod_newsview.php in RS-CMS 2.1 allows remote attackers to execute arbitrary SQL com... |
| CVE-2009-2208 | — | — | 0.4% | Jun 25, 2009 | FreeBSD 6.3, 6.4, 7.1, and 7.2 does not enforce permissions on the SIOCSIFINFO_IN6 IOCTL, which allows local users to mo... |
| CVE-2009-2185 | — | — | 2.7% | Jun 25, 2009 | The ASN.1 parser (pluto/asn1.c, libstrongswan/asn1/asn1.c, libstrongswan/asn1/asn1_parser.c) in (a) strongSwan 2.8 befor... |
| CVE-2009-2187 | — | — | 0.5% | Jun 25, 2009 | Multiple memory leaks in the (1) IP and (2) IPv6 multicast implementation in the kernel in Sun Solaris 10, and OpenSolar... |
| CVE-2009-2186 | — | — | 4.7% | Jun 25, 2009 | Unspecified vulnerability in Adobe Shockwave Player before 11.0.0.465 allows remote attackers to execute arbitrary code ... |
| CVE-2009-2046 | — | — | 1.1% | Jun 25, 2009 | The embedded web server on the Cisco Video Surveillance 2500 Series IP Camera with firmware before 2.1 allows remote att... |
| CVE-2009-2045 | — | — | 1.6% | Jun 25, 2009 | The Cisco Video Surveillance Stream Manager firmware before 5.3, as used on Cisco Video Surveillance Services Platforms ... |
| CVE-2009-1888 | — | — | 4.6% | Jun 25, 2009 | The acl_group_override function in smbd/posix_acls.c in smbd in Samba 3.0.x before 3.0.35, 3.1.x and 3.2.x before 3.2.13... |
| CVE-2009-1886 | — | — | 12.2% | Jun 25, 2009 | Multiple format string vulnerabilities in client/client.c in smbclient in Samba 3.2.0 through 3.2.12 might allow context... |
| CVE-2009-1860 | — | — | 5.6% | Jun 25, 2009 | Unspecified vulnerability in Adobe Shockwave Player before 11.5.0.600 allows remote attackers to execute arbitrary code ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now