2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2009-1377——The dtls1_buffer_record function in ssl/d1_pkt.c in OpenSSL 0.9.8k and earlier 0.9.8 versions allows remote attackers to...
CVE-2009-1252——Stack-based buffer overflow in the crypto_recv function in ntp_crypto.c in ntpd in NTP before 4.2.4p7 and 4.2.5 before 4...
CVE-2009-1678——Directory traversal vulnerability in the saveFeed function in rss/feedcreator.class.php in Bitweaver 2.6 and earlier all...
CVE-2009-1677——Multiple static code injection vulnerabilities in the saveFeed function in rss/feedcreator.class.php in Bitweaver 2.6 an...
CVE-2009-1676——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-1535. Reason: This candidate is a duplicate of...
CVE-2009-1675——Stack-based buffer overflow in ElectraSoft 32bit FTP 09.04.24 allows remote FTP servers to execute arbitrary code via a ...
CVE-2009-1674——Stack-based buffer overflow in Microchip MPLAB IDE 8.30 allows user-assisted remote attackers to execute arbitrary code ...
CVE-2009-1673——The kernel in Sun Solaris 9 allows local users to cause a denial of service (panic) by calling fstat with a first argume...
CVE-2009-1672——The Deployment Toolkit ActiveX control in deploytk.dll 6.0.130.3 in Sun Java SE Runtime Environment (aka JRE) 6 Update 1...
CVE-2009-1671——Multiple buffer overflows in the Deployment Toolkit ActiveX control in deploytk.dll 6.0.130.3 in Sun Java SE Runtime Env...
CVE-2009-1670——user/index.php in TCPDB 3.8 does not require administrative authentication, which allows remote attackers to add admin a...
CVE-2009-1669——The smarty_function_math function in libs/plugins/function.math.php in Smarty 2.6.22 allows context-dependent attackers ...
CVE-2009-1668——TYPSoft FTP Server 1.11 allows remote attackers to cause a denial of service (CPU consumption) by sending an ABOR (abort...
CVE-2009-1667——Stack-based buffer overflow in Mini-stream CastRipper 2.50.70 allows remote attackers to execute arbitrary code via a lo...
CVE-2009-1666——Multiple unspecified vulnerabilities in CycloMedia CycloScopeLite 2.50.3.0 allow remote attackers to execute arbitrary c...
CVE-2009-0721——Unspecified vulnerability in Easy Login in the Sender module in HP Remote Graphics Software (RGS) 4.0.0 through 5.2.4 al...
CVE-2009-1665——myaccount.php in Easy Scripts Answer and Question Script allows remote attackers to remove arbitrary user accounts via a...
CVE-2009-1664——myaccount.php in Easy Scripts Answer and Question Script does not verify the original password before changing passwords...
CVE-2009-1663——Unrestricted file upload vulnerability in myaccount.php in Easy Scripts Answer and Question Script allows remote attacke...
CVE-2009-1662——Multiple SQL injection vulnerabilities in admin/login.php in Wright Way Services Recipe Script 5 allow remote attackers ...
CVE-2009-1661——SQL injection vulnerability in admin/utopic.php in uTopic 1.0, when magic_quotes_gpc is disabled, allows remote attacker...
CVE-2009-1660——Stack-based buffer overflow in URUWorks ViPlay3 3.0 and earlier allows remote attackers to cause a denial of service (cr...
CVE-2009-1659——Unrestricted file upload vulnerability in admin/uploadimage.php in eLitius 1.0 allows remote attackers to bypass intende...
CVE-2009-1658——Multiple SQL injection vulnerabilities in admin/admin.php in Realty Webware Technologies Realty Web-Base 1.0 allow remot...
CVE-2009-1657——Multiple SQL injection vulnerabilities in the Starrating plugin before 0.7.7 for b2evolution allow remote attackers to e...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now