2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-1788 | — | — | 8.2% | May 26, 2009 | Heap-based buffer overflow in voc_read_header in libsndfile 1.0.15 through 1.0.19, as used in Winamp 5.552 and possibly ... |
| CVE-2009-1787 | — | — | 1.0% | May 26, 2009 | Multiple SQL injection vulnerabilities in PHP Dir Submit (aka WebsiteSubmitter and Submitter Script) allow remote attack... |
| CVE-2009-1786 | — | — | 0.7% | May 26, 2009 | The malloc subsystem in libc in IBM AIX 5.3 and 6.1 allows local users to create or overwrite arbitrary files via a syml... |
| CVE-2009-1754 | — | — | 0.7% | May 26, 2009 | The PackageManagerService class in services/java/com/android/server/PackageManagerService.java in Android 1.5 through 1.... |
| CVE-2009-1636 | — | — | 8.4% | May 26, 2009 | Multiple buffer overflows in the Internet Agent (aka GWIA) component in Novell GroupWise 7.x before 7.03 HP3 and 8.x bef... |
| CVE-2009-1634 | — | — | 7.2% | May 26, 2009 | The WebAccess component in Novell GroupWise 7.x before 7.03 HP3 and 8.x before 8.0 HP2 does not properly implement sessi... |
| CVE-2009-1476 | — | — | 0.5% | May 26, 2009 | Buffer overflow in lib/load_http.c in ippool in Darren Reed IPFilter (aka IP Filter) 4.1.31 allows local users to gain p... |
| CVE-2009-1376 | — | — | 13.3% | May 26, 2009 | Multiple integer overflows in the msn_slplink_process_msg functions in the MSN protocol handler in (1) libpurple/protoco... |
| CVE-2009-1375 | — | — | 2.3% | May 26, 2009 | The PurpleCircBuffer implementation in Pidgin (formerly Gaim) before 2.5.6 does not properly maintain a certain buffer, ... |
| CVE-2009-1374 | — | — | 2.5% | May 26, 2009 | Buffer overflow in the decrypt_out function in Pidgin (formerly Gaim) before 2.5.6 allows remote attackers to cause a de... |
| CVE-2009-1373 | — | — | 4.3% | May 26, 2009 | Buffer overflow in the XMPP SOCKS5 bytestream server in Pidgin (formerly Gaim) before 2.5.6 allows remote authenticated ... |
| CVE-2009-1785 | — | — | 0.8% | May 22, 2009 | Cross-site scripting (XSS) vulnerability in Ulteo Open Virtual Desktop 1.0 allows remote attackers to inject arbitrary w... |
| CVE-2009-1784 | — | — | 3.4% | May 22, 2009 | The AVG parsing engine 8.5 323, as used in multiple AVG anti-virus products including Anti-Virus Network Edition, Intern... |
| CVE-2009-1783 | — | — | 3.4% | May 22, 2009 | Multiple FRISK Software F-Prot anti-virus products, including Antivirus for Exchange, Linux on IBM zSeries, Linux x86 Fi... |
| CVE-2009-1782 | — | — | 2.2% | May 22, 2009 | Multiple F-Secure anti-virus products, including Anti-Virus for Microsoft Exchange 7.10 and earlier; Internet Gatekeeper... |
| CVE-2009-1781 | — | — | 3.2% | May 22, 2009 | Static code injection vulnerability in admin.php in Frax.dk Php Recommend 1.3 and earlier allows remote attackers to inj... |
| CVE-2009-1780 | — | — | 3.8% | May 22, 2009 | admin.php in Frax.dk Php Recommend 1.3 and earlier does not require authentication when the user password is changed, wh... |
| CVE-2009-1779 | — | — | 3.9% | May 22, 2009 | PHP remote file inclusion vulnerability in admin.php in Frax.dk Php Recommend 1.3 and earlier allows remote attackers to... |
| CVE-2009-1778 | — | — | 1.2% | May 22, 2009 | SQL injection vulnerability in the new user registration feature in BigACE CMS 2.5, when magic_quotes_gpc is disabled, a... |
| CVE-2009-1777 | — | — | 2.0% | May 22, 2009 | CRLF injection vulnerability in FormMail.pl in Matt Wright FormMail 1.92, and possibly earlier, allows remote attackers ... |
| CVE-2009-1776 | — | — | 1.5% | May 22, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in FormMail.pl in Matt Wright FormMail 1.92, and possibly earlier, a... |
| CVE-2009-1775 | — | — | 1.0% | May 22, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Ulteo Open Virtual Desktop 1.0 allow remote attackers to inject a... |
| CVE-2009-1381 | — | — | 2.9% | May 22, 2009 | The map_yp_alias function in functions/imap_general.php in SquirrelMail before 1.4.19-1 on Debian GNU/Linux, and possibl... |
| CVE-2009-1774 | — | — | 17.9% | May 22, 2009 | Directory traversal vulnerability in plugins/ddb/foot.php in Strawberry 1.1.1 allows remote attackers to include and exe... |
| CVE-2009-1773 | — | — | 1.9% | May 22, 2009 | activeCollab 2.1 Corporate allows remote attackers to obtain sensitive information via an invalid re_route parameter to ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now