2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-1820 | — | — | 1.5% | May 29, 2009 | Cross-site scripting (XSS) vulnerability in product.php in 2daybiz Custom T-shirt Design Script allows remote attackers ... |
| CVE-2009-1819 | — | — | 1.0% | May 29, 2009 | SQL injection vulnerability in product.php in 2daybiz Custom T-shirt Design Script allows remote attackers to execute ar... |
| CVE-2009-1818 | — | — | 1.0% | May 29, 2009 | SQL injection vulnerability in admin/admin_manager.asp in MaxCMS 2.0 allows remote attackers to execute arbitrary SQL co... |
| CVE-2009-1817 | — | — | 5.6% | May 29, 2009 | Multiple buffer overflows in DigiMode Maya 1.0.2 allow remote attackers to execute arbitrary code via a long string in a... |
| CVE-2009-1816 | — | — | 1.0% | May 29, 2009 | SQL injection vulnerability in admin.php in My Game Script 2.0 allows remote attackers to execute arbitrary SQL commands... |
| CVE-2009-1815 | — | — | 5.8% | May 29, 2009 | Stack-based buffer overflow in Sonic Spot Audioactive Player 1.93b allows remote attackers to execute arbitrary code via... |
| CVE-2009-1814 | — | — | 1.0% | May 29, 2009 | SQL injection vulnerability in mail.php in PHPenpals 1.1 and earlier allows remote attackers to execute arbitrary SQL co... |
| CVE-2009-1813 | — | — | 2.3% | May 29, 2009 | Multiple SQL injection vulnerabilities in admin/index.php in Submitter Script 2 allow remote attackers to execute arbitr... |
| CVE-2009-1812 | — | — | 0.9% | May 29, 2009 | Multiple SQL injection vulnerabilities in myGesuad 0.9.14 (aka 0.9) allow remote attackers to execute arbitrary SQL comm... |
| CVE-2009-1811 | — | — | 1.5% | May 29, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in myGesuad 0.9.14 (aka 0.9) allow remote attackers to inject arbitr... |
| CVE-2009-1810 | — | — | 0.9% | May 29, 2009 | Multiple SQL injection vulnerabilities in myColex 1.4.2 allow remote attackers to execute arbitrary SQL commands via (1)... |
| CVE-2009-1809 | — | — | 1.5% | May 29, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in myColex 1.4.2 allow remote attackers to inject arbitrary web scri... |
| CVE-2009-1808 | — | — | 2.8% | May 28, 2009 | Microsoft Windows XP SP3 allows local users to cause a denial of service (system crash) by making an SPI_SETDESKWALLPAPE... |
| CVE-2009-1807 | — | — | 7.5% | May 28, 2009 | Unspecified vulnerability in Config.dll in Baofeng products 3.09.04.17 and earlier allows remote attackers to execute ar... |
| CVE-2009-1806 | — | — | 1.3% | May 28, 2009 | Unspecified vulnerability in IBM Hardware Management Console (HMC) 7 release 3.4.0 SP2, when Active Memory Sharing is us... |
| CVE-2009-1633 | — | — | 3.0% | May 28, 2009 | Multiple buffer overflows in the cifs subsystem in the Linux kernel before 2.6.29.4 allow remote CIFS servers to cause a... |
| CVE-2009-1384 | — | — | 3.3% | May 28, 2009 | pam_krb5 2.2.14 through 2.3.4, as used in Red Hat Enterprise Linux (RHEL) 5, generates different password prompts depend... |
| CVE-2009-1195 | — | — | 2.0% | May 28, 2009 | The Apache HTTP Server 2.2.11 and earlier 2.2 versions does not properly handle Options=IncludesNOEXEC in the AllowOverr... |
| CVE-2009-1804 | — | — | 1.0% | May 28, 2009 | Multiple SQL injection vulnerabilities in admin/index.php in VideoScript.us YouTube Video Script allow remote attackers ... |
| CVE-2009-1803 | — | — | 1.2% | May 28, 2009 | FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, generates different error messages for a failed l... |
| CVE-2009-1802 | — | — | 0.6% | May 28, 2009 | Multiple cross-site request forgery (CSRF) vulnerabilities in FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6... |
| CVE-2009-1801 | — | — | 1.3% | May 28, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x vers... |
| CVE-2009-1800 | — | — | 10.9% | May 28, 2009 | Stack-based buffer overflow in the Chinagames CGAgent ActiveX control 1.x in CGAgent.dll, as distributed in Chinagames i... |
| CVE-2009-1799 | — | — | 0.9% | May 28, 2009 | Multiple SQL injection vulnerabilities in the getGalleryImage function in st_admin/gallery_output.php in ST-Gallery 0.1 ... |
| CVE-2009-1477 | — | — | 2.1% | May 27, 2009 | The https web interfaces on the ATEN KH1516i IP KVM switch with firmware 1.0.063, the KN9116 IP KVM switch with firmware... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now