2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2022 | — | — | 5.2% | Jun 9, 2009 | fipsCMS Light 2.1 stores sensitive information under the web root with insufficient access control, which allows remote ... |
| CVE-2009-2021 | — | — | 1.0% | Jun 9, 2009 | SQL injection vulnerability in search.php in Virtue Classifieds allows remote attackers to execute arbitrary SQL command... |
| CVE-2009-2020 | — | — | 1.3% | Jun 9, 2009 | Cross-site scripting (XSS) vulnerability in news_detail.php in Virtue News Manager allows remote attackers to inject arb... |
| CVE-2009-2019 | — | — | 1.0% | Jun 9, 2009 | SQL injection vulnerability in news_detail.php in Virtue News Manager allows remote attackers to execute arbitrary SQL c... |
| CVE-2009-2018 | — | — | 0.9% | Jun 9, 2009 | SQL injection vulnerability in admin/index.php in Jared Eckersley MyCars, when magic_quotes_gpc is disabled, allows remo... |
| CVE-2009-2017 | — | — | 1.0% | Jun 9, 2009 | SQL injection vulnerability in products.php in Virtue Book Store allows remote attackers to execute arbitrary SQL comman... |
| CVE-2009-2016 | — | — | 1.0% | Jun 9, 2009 | SQL injection vulnerability in products.php in Virtue Shopping Mall allows remote attackers to execute arbitrary SQL com... |
| CVE-2009-2015 | — | — | 6.5% | Jun 9, 2009 | Directory traversal vulnerability in includes/file_includer.php in the Ideal MooFAQ (com_moofaq) component 1.0 for Jooml... |
| CVE-2009-2014 | — | — | 1.0% | Jun 9, 2009 | SQL injection vulnerability in the ComSchool (com_school) component 1.4 for Joomla! allows remote attackers to execute a... |
| CVE-2009-2013 | — | — | 1.0% | Jun 9, 2009 | SQL injection vulnerability in bin/aps_browse_sources.php in Frontis 3.9.01.24 allows remote attackers to execute arbitr... |
| CVE-2009-2012 | — | — | 0.3% | Jun 9, 2009 | Unspecified vulnerability in idmap in Sun OpenSolaris snv_88 through snv_110, when a CIFS server is enabled, allows loca... |
| CVE-2009-1196 | — | — | 2.6% | Jun 9, 2009 | The directory-services functionality in the scheduler in CUPS 1.1.17 and 1.1.22 allows remote attackers to cause a denia... |
| CVE-2009-0949 | HIGH | 7.5 | 19.6% | Jun 9, 2009 | The ippReadIO function in cups/ipp.c in cupsd in CUPS before 1.3.10 does not properly initialize memory for IPP request ... |
| CVE-2009-0791 | — | — | 5.5% | Jun 9, 2009 | Multiple integer overflows in Xpdf 2.x and 3.x and Poppler 0.x, as used in the pdftops filter in CUPS 1.1.17, 1.1.22, an... |
| CVE-2009-2010 | — | — | 0.9% | Jun 8, 2009 | Multiple SQL injection vulnerabilities in Haudenschilt Family Connections CMS (FCMS) 1.9 and earlier allow remote authen... |
| CVE-2009-2009 | — | — | 1.1% | Jun 8, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to inj... |
| CVE-2009-2008 | — | — | 1.0% | Jun 8, 2009 | Multiple SQL injection vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to execute arbitrar... |
| CVE-2009-2007 | — | — | 1.9% | Jun 8, 2009 | Multiple directory traversal vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to (1) read p... |
| CVE-2009-2006 | — | — | 1.3% | Jun 8, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to inj... |
| CVE-2009-2005 | — | — | 0.7% | Jun 8, 2009 | Cross-site request forgery (CSRF) vulnerability in Dokeos 1.8.5, and possibly earlier, allows remote attackers to hijack... |
| CVE-2009-2004 | — | — | 1.3% | Jun 8, 2009 | Multiple SQL injection vulnerabilities in main/mySpace/myStudents.php in Dokeos 1.8.5, and possibly earlier, allow remot... |
| CVE-2009-2003 | — | — | 2.5% | Jun 8, 2009 | Ascad Networks Password Protector SD 1.3.1 allows remote attackers to bypass authentication and gain administrative acce... |
| CVE-2009-1962 | — | — | 0.3% | Jun 8, 2009 | Xfig, possibly 3.2.5, allows local users to read and write arbitrary files via a symlink attack on the (1) xfig-eps[PID]... |
| CVE-2009-1961 | MEDIUM | 4.7 | 0.6% | Jun 8, 2009 | The inode double locking code in fs/ocfs2/file.c in the Linux kernel 2.6.30 before 2.6.30-rc3, 2.6.27 before 2.6.27.24, ... |
| CVE-2009-1960 | — | — | 23.2% | Jun 8, 2009 | inc/init.php in DokuWiki 2009-02-14, rc2009-02-06, and rc2009-01-30, when register_globals is enabled, allows remote att... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now