2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-1656 | — | — | 3.6% | May 16, 2009 | Xerox WorkCentre and WorkCentre Pro 232, 238, 245, 255, 265, 275; and WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, 568... |
| CVE-2009-1655 | — | — | 1.7% | May 16, 2009 | Multiple SQL injection vulnerabilities in myaccount.php in Easy Scripts Answer and Question Script allow remote authenti... |
| CVE-2009-1654 | — | — | 1.5% | May 16, 2009 | Cross-site scripting (XSS) vulnerability in questiondetail.php in Easy Scripts Answer and Question Script allows remote ... |
| CVE-2009-1653 | — | — | 2.9% | May 16, 2009 | Directory traversal vulnerability in examples/tbs_us_examples_0view.php in TinyButStrong 3.4.0 allows remote attackers t... |
| CVE-2009-1652 | — | — | 6.1% | May 16, 2009 | admin/adminaddeditdetails.php in Business Community Script does not properly restrict access, which allows remote attack... |
| CVE-2009-1651 | — | — | 2.0% | May 16, 2009 | SQL injection vulnerability in admin/member_details.php in 2daybiz Business Community Script allows remote attackers to ... |
| CVE-2009-1650 | — | — | 1.0% | May 16, 2009 | Multiple SQL injection vulnerabilities in photos.php in Shutter 0.1.1 allow remote attackers to execute arbitrary SQL co... |
| CVE-2009-1649 | — | — | 2.3% | May 16, 2009 | Directory traversal vulnerability in arch.php in beLive 0.2.3 allows remote attackers to read arbitrary files via a .. (... |
| CVE-2009-1647 | — | — | 2.7% | May 15, 2009 | Heap-based buffer overflow in popcorn.exe in Ultrafunk Popcorn 1.87 allows remote POP3 servers to cause a denial of serv... |
| CVE-2009-1646 | — | — | 5.1% | May 15, 2009 | Stack-based buffer overflow in Mini-stream RM Downloader 3.0.0.9 allows remote attackers to execute arbitrary code via a... |
| CVE-2009-1645 | — | — | 7.1% | May 15, 2009 | Multiple stack-based buffer overflows in Mini-stream Easy RM-MP3 Converter 3.0.0.7 allow remote attackers to execute arb... |
| CVE-2009-1644 | — | — | 5.8% | May 15, 2009 | Stack-based buffer overflow in Sorinara Streaming Audio Player 0.9 allows remote attackers to execute arbitrary code via... |
| CVE-2009-1643 | — | — | 5.8% | May 15, 2009 | Stack-based buffer overflow in Sorinara Soritong MP3 Player 1.0 allows remote attackers to execute arbitrary code via a ... |
| CVE-2009-1642 | — | — | 6.9% | May 15, 2009 | Multiple stack-based buffer overflows in Mini-stream ASX to MP3 Converter 3.0.0.7 allow remote attackers to execute arbi... |
| CVE-2009-1641 | — | — | 30.9% | May 15, 2009 | Multiple stack-based buffer overflows in Mini-stream Ripper 3.0.1.1 allow remote attackers to execute arbitrary code via... |
| CVE-2009-1640 | — | — | 3.3% | May 15, 2009 | Stack-based buffer overflow in Nucleus Data Recovery Kernel Recovery for Macintosh 4.04 allows user-assisted attackers t... |
| CVE-2009-1639 | — | — | 2.8% | May 15, 2009 | Stack-based buffer overflow in Nucleus Data Recovery Kernel Recovery for Novell 4.03 allows user-assisted attackers to e... |
| CVE-2009-1638 | — | — | 2.6% | May 15, 2009 | Techno Dreams Job Career Package 3.0 allows remote attackers to bypass authentication and obtain administrative access b... |
| CVE-2009-1637 | — | — | 2.2% | May 15, 2009 | profile.php in Simple Customer 1.3 does not require administrative authentication, which allows remote attackers to chan... |
| CVE-2009-0688 | — | — | 8.2% | May 15, 2009 | Multiple buffer overflows in the CMU Cyrus SASL library before 2.1.23 might allow remote attackers to execute arbitrary ... |
| CVE-2009-1632 | — | — | 2.0% | May 14, 2009 | Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumptio... |
| CVE-2009-1631 | — | — | 0.4% | May 14, 2009 | The Mailer component in Evolution 2.26.1 and earlier uses world-readable permissions for the .evolution directory, and c... |
| CVE-2009-1630 | — | — | 0.5% | May 14, 2009 | The nfs_permission function in fs/nfs/dir.c in the NFS client implementation in the Linux kernel 2.6.29.3 and earlier, w... |
| CVE-2009-1629 | — | — | 2.3% | May 14, 2009 | ajaxterm.js in AjaxTerm 0.10 and earlier generates session IDs with predictable random numbers based on certain JavaScri... |
| CVE-2009-1581 | — | — | 1.7% | May 14, 2009 | functions/mime.php in SquirrelMail before 1.4.18 does not protect the application's content from Cascading Style Sheets ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now