2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-1138 | — | — | 39.4% | Jun 10, 2009 | The LDAP service in Active Directory on Microsoft Windows 2000 SP4 does not properly free memory for LDAP and LDAPS requ... |
| CVE-2009-0568 | — | — | 32.4% | Jun 10, 2009 | The RPC Marshalling Engine (aka NDR) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, an... |
| CVE-2009-0565 | — | — | 40.5% | Jun 10, 2009 | Buffer overflow in Microsoft Office Word 2000 SP3, 2002 SP3, and 2007 SP1 and SP2; Microsoft Office for Mac 2004 and 200... |
| CVE-2009-0563 | HIGH | 7.8 | 63.1% | Jun 10, 2009 | Stack-based buffer overflow in Microsoft Office Word 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Microsoft Office for Mac ... |
| CVE-2009-0239 | — | — | 32.5% | Jun 10, 2009 | Cross-site scripting (XSS) vulnerability in Windows Search 4.0 for Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 ... |
| CVE-2009-0230 | — | — | 34.9% | Jun 10, 2009 | The Windows Print Spooler in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and ... |
| CVE-2009-0229 | — | — | 3.9% | Jun 10, 2009 | The Windows Printing Service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, a... |
| CVE-2009-0228 | — | — | 20.5% | Jun 10, 2009 | Stack-based buffer overflow in the EnumeratePrintShares function in Windows Print Spooler Service (win32spl.dll) in Micr... |
| CVE-2009-1694 | — | — | 2.6% | Jun 10, 2009 | WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not ... |
| CVE-2009-1693 | — | — | 2.8% | Jun 10, 2009 | WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows re... |
| CVE-2009-1691 | — | — | 2.7% | Jun 10, 2009 | Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone O... |
| CVE-2009-1690 | — | — | 6.6% | Jun 10, 2009 | Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, iPhone OS for i... |
| CVE-2009-1689 | — | — | 2.7% | Jun 10, 2009 | Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone O... |
| CVE-2009-1688 | — | — | 2.7% | Jun 10, 2009 | Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone O... |
| CVE-2009-1687 | — | — | 8.1% | Jun 10, 2009 | The JavaScript garbage collector in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iP... |
| CVE-2009-1686 | — | — | 7.5% | Jun 10, 2009 | WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not ... |
| CVE-2009-1685 | — | — | 2.7% | Jun 10, 2009 | Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone O... |
| CVE-2009-1684 | — | — | 8.7% | Jun 10, 2009 | Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone O... |
| CVE-2009-1682 | — | — | 1.1% | Jun 10, 2009 | Apple Safari before 4.0 does not properly check for revoked Extended Validation (EV) certificates, which makes it easier... |
| CVE-2009-1681 | — | — | 3.0% | Jun 10, 2009 | WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not ... |
| CVE-2009-1535 | — | — | 98.1% | Jun 10, 2009 | The WebDAV extension in Microsoft Internet Information Services (IIS) 5.1 and 6.0 allows remote attackers to bypass URI-... |
| CVE-2009-1296 | — | — | 0.3% | Jun 9, 2009 | The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount passphrase in installation... |
| CVE-2009-2025 | — | — | 2.6% | Jun 9, 2009 | admin/login.php in DM FileManager 3.9.2 allows remote attackers to bypass authentication and gain administrative access ... |
| CVE-2009-2024 | — | — | 2.3% | Jun 9, 2009 | Vlad Titarenko ASP VT Auth 1.0 stores sensitive information under the web root with insufficient access control, which a... |
| CVE-2009-2023 | — | — | 0.9% | Jun 9, 2009 | SQL injection vulnerability in index.php in Shop-Script Pro 2.12, when magic_quotes_gpc is disabled, allows remote attac... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now