2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2020 | — | — | 1.3% | Jun 9, 2009 | Cross-site scripting (XSS) vulnerability in news_detail.php in Virtue News Manager allows remote attackers to inject arb... |
| CVE-2009-2019 | — | — | 1.0% | Jun 9, 2009 | SQL injection vulnerability in news_detail.php in Virtue News Manager allows remote attackers to execute arbitrary SQL c... |
| CVE-2009-2018 | — | — | 0.9% | Jun 9, 2009 | SQL injection vulnerability in admin/index.php in Jared Eckersley MyCars, when magic_quotes_gpc is disabled, allows remo... |
| CVE-2009-2017 | — | — | 1.0% | Jun 9, 2009 | SQL injection vulnerability in products.php in Virtue Book Store allows remote attackers to execute arbitrary SQL comman... |
| CVE-2009-2016 | — | — | 1.0% | Jun 9, 2009 | SQL injection vulnerability in products.php in Virtue Shopping Mall allows remote attackers to execute arbitrary SQL com... |
| CVE-2009-2015 | — | — | 6.5% | Jun 9, 2009 | Directory traversal vulnerability in includes/file_includer.php in the Ideal MooFAQ (com_moofaq) component 1.0 for Jooml... |
| CVE-2009-2014 | — | — | 1.0% | Jun 9, 2009 | SQL injection vulnerability in the ComSchool (com_school) component 1.4 for Joomla! allows remote attackers to execute a... |
| CVE-2009-2013 | — | — | 1.0% | Jun 9, 2009 | SQL injection vulnerability in bin/aps_browse_sources.php in Frontis 3.9.01.24 allows remote attackers to execute arbitr... |
| CVE-2009-2012 | — | — | 0.3% | Jun 9, 2009 | Unspecified vulnerability in idmap in Sun OpenSolaris snv_88 through snv_110, when a CIFS server is enabled, allows loca... |
| CVE-2009-1196 | — | — | 2.6% | Jun 9, 2009 | The directory-services functionality in the scheduler in CUPS 1.1.17 and 1.1.22 allows remote attackers to cause a denia... |
| CVE-2009-0791 | — | — | 5.5% | Jun 9, 2009 | Multiple integer overflows in Xpdf 2.x and 3.x and Poppler 0.x, as used in the pdftops filter in CUPS 1.1.17, 1.1.22, an... |
| CVE-2009-2010 | — | — | 0.9% | Jun 8, 2009 | Multiple SQL injection vulnerabilities in Haudenschilt Family Connections CMS (FCMS) 1.9 and earlier allow remote authen... |
| CVE-2009-2009 | — | — | 1.1% | Jun 8, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to inj... |
| CVE-2009-2008 | — | — | 1.0% | Jun 8, 2009 | Multiple SQL injection vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to execute arbitrar... |
| CVE-2009-2007 | — | — | 1.9% | Jun 8, 2009 | Multiple directory traversal vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to (1) read p... |
| CVE-2009-2006 | — | — | 1.3% | Jun 8, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to inj... |
| CVE-2009-2005 | — | — | 0.7% | Jun 8, 2009 | Cross-site request forgery (CSRF) vulnerability in Dokeos 1.8.5, and possibly earlier, allows remote attackers to hijack... |
| CVE-2009-2004 | — | — | 1.3% | Jun 8, 2009 | Multiple SQL injection vulnerabilities in main/mySpace/myStudents.php in Dokeos 1.8.5, and possibly earlier, allow remot... |
| CVE-2009-2003 | — | — | 2.5% | Jun 8, 2009 | Ascad Networks Password Protector SD 1.3.1 allows remote attackers to bypass authentication and gain administrative acce... |
| CVE-2009-1962 | — | — | 0.3% | Jun 8, 2009 | Xfig, possibly 3.2.5, allows local users to read and write arbitrary files via a symlink attack on the (1) xfig-eps[PID]... |
| CVE-2009-1960 | — | — | 23.2% | Jun 8, 2009 | inc/init.php in DokuWiki 2009-02-14, rc2009-02-06, and rc2009-01-30, when register_globals is enabled, allows remote att... |
| CVE-2009-1959 | — | — | 8.4% | Jun 8, 2009 | Off-by-one error in the event_wallops function in fe-common/irc/fe-events.c in irssi 0.8.13 allows remote IRC servers to... |
| CVE-2009-1958 | — | — | 2.9% | Jun 8, 2009 | charon/sa/tasks/child_create.c in the charon daemon in strongSWAN before 4.3.1 switches the NULL checks for TSi and TSr ... |
| CVE-2009-1957 | — | — | 2.9% | Jun 8, 2009 | charon/sa/ike_sa.c in the charon daemon in strongSWAN before 4.3.1 allows remote attackers to cause a denial of service ... |
| CVE-2009-1956 | — | — | 12.0% | Jun 8, 2009 | Off-by-one error in the apr_brigade_vprintf function in Apache APR-util before 1.3.5 on big-endian platforms allows remo... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now