2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-1163 | — | — | 1.6% | Jun 25, 2009 | Memory leak on the Cisco Physical Access Gateway with software before 1.1 allows remote attackers to cause a denial of s... |
| CVE-2009-0903 | — | — | 2.2% | Jun 25, 2009 | IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.3, and the Feature Pack for Web Services for WAS 6.1 before 6.1.... |
| CVE-2009-2184 | — | — | 2.7% | Jun 23, 2009 | Absolute path traversal vulnerability in forcedownload.php in Gravy Media Photo Host 1.0.8 allows remote attackers to re... |
| CVE-2009-2183 | — | — | 5.7% | Jun 23, 2009 | Directory traversal vulnerability in admin-files/ad.php in Campsite 3.3.0 RC1 allows remote attackers to read and possib... |
| CVE-2009-2182 | — | — | 1.7% | Jun 23, 2009 | Multiple PHP remote file inclusion vulnerabilities in Campsite 3.3.0 RC1 allow remote attackers to execute arbitrary PHP... |
| CVE-2009-2181 | — | — | 2.4% | Jun 23, 2009 | Cross-site scripting (XSS) vulnerability in admin-files/templates/list_dir.php in Campsite 3.3.0 RC1 allows remote attac... |
| CVE-2009-2180 | — | — | 6.1% | Jun 23, 2009 | Multiple directory traversal vulnerabilities in upfiles/index.php in Pc4 Uploader 10.0 and earlier allow remote attacker... |
| CVE-2009-2179 | — | — | 1.0% | Jun 23, 2009 | SQL injection vulnerability in search.php in phpDatingClub 3.7 allows remote attackers to execute arbitrary SQL commands... |
| CVE-2009-2178 | — | — | 1.2% | Jun 23, 2009 | Cross-site scripting (XSS) vulnerability in website.php in phpDatingClub 3.7 allows remote attackers to inject arbitrary... |
| CVE-2009-2177 | — | — | 4.2% | Jun 23, 2009 | code/display.php in fuzzylime (cms) 3.03a and earlier, when magic_quotes_gpc is disabled, allows remote attackers to con... |
| CVE-2009-2176 | — | — | 7.4% | Jun 23, 2009 | Multiple directory traversal vulnerabilities in fuzzylime (cms) 3.03a and earlier, when magic_quotes_gpc is disabled, al... |
| CVE-2009-2175 | — | — | 3.1% | Jun 23, 2009 | Stack-based buffer overflow in the flattenIncrementally function in flatten.c in xcftools 1.0.4, as reachable from the (... |
| CVE-2009-2174 | — | — | 4.9% | Jun 23, 2009 | GUPnP 0.12.7 allows remote attackers to cause a denial of service (crash) via an empty (1) subscription or (2) control m... |
| CVE-2009-2173 | — | — | 2.0% | Jun 23, 2009 | The LAN game feature in Carom3D 5.06 allows remote authenticated users to cause a denial of service (application hang) v... |
| CVE-2009-2172 | — | — | 1.2% | Jun 23, 2009 | Cross-site scripting (XSS) vulnerability in forum/radioandtv.php in the Radio and TV Player addon for vBulletin allows r... |
| CVE-2009-2121 | — | — | 2.0% | Jun 23, 2009 | Buffer overflow in the browser kernel in Google Chrome before 2.0.172.33 allows remote HTTP servers to cause a denial of... |
| CVE-2009-0691 | — | — | 5.6% | Jun 23, 2009 | The Foxit JPEG2000/JBIG2 Decoder add-on before 2.0.2009.616 for Foxit Reader 3.0 before Build 1817 does not properly han... |
| CVE-2009-0690 | — | — | 5.7% | Jun 23, 2009 | The Foxit JPEG2000/JBIG2 Decoder add-on before 2.0.2009.616 for Foxit Reader 3.0 before Build 1817 does not properly han... |
| CVE-2009-2171 | — | — | 0.9% | Jun 23, 2009 | Mahara 1.1 before 1.1.5 does not apply permission checks when saving a view that contains artefacts, which allows remote... |
| CVE-2009-2170 | — | — | 0.9% | Jun 23, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Mahara 1.0 before 1.0.12 and 1.1 before 1.1.5 allow remote attack... |
| CVE-2009-2169 | — | — | 4.5% | Jun 22, 2009 | Insecure method vulnerability in the PDFVIEWER.PDFViewerCtrl.1 ActiveX control (pdfviewer.ocx) in Edraw PDF Viewer Compo... |
| CVE-2009-2168 | CRITICAL | 9.8 | 11.8% | Jun 22, 2009 | cpanel/login.php in EgyPlus 7ammel (aka 7ml) 1.0.1 and earlier sends a redirect to the web browser but does not exit whe... |
| CVE-2009-2167 | — | — | 0.9% | Jun 22, 2009 | Multiple SQL injection vulnerabilities in cpanel/login.php in EgyPlus 7ammel (aka 7ml) 1.0.1 and earlier, when magic_quo... |
| CVE-2009-2166 | — | — | 3.2% | Jun 22, 2009 | Absolute path traversal vulnerability in cvs.php in OCS Inventory NG before 1.02.1 on Unix allows remote attackers to re... |
| CVE-2009-2165 | — | — | 1.4% | Jun 22, 2009 | SerendipityNZ (aka SimpleBoxes) Serene Bach 2.20R and earlier, and 3.00 beta023 and earlier 3.x versions, uses a predict... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now