2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-1432 | — | — | 4.2% | Apr 30, 2009 | Symantec Reporting Server, as used in Symantec AntiVirus (SAV) Corporate Edition 10.1 before 10.1 MR8 and 10.2 before 10... |
| CVE-2009-1417 | — | — | 1.4% | Apr 30, 2009 | gnutls-cli in GnuTLS before 2.6.6 does not verify the activation and expiration times of X.509 certificates, which allow... |
| CVE-2009-1416 | — | — | 3.9% | Apr 30, 2009 | lib/gnutls_pk.c in libgnutls in GnuTLS 2.5.0 through 2.6.5 generates RSA keys stored in DSA structures, instead of the i... |
| CVE-2009-1415 | — | — | 7.9% | Apr 30, 2009 | lib/pk-libgcrypt.c in libgnutls in GnuTLS before 2.6.6 does not properly handle invalid DSA signatures, which allows rem... |
| CVE-2009-1348 | — | — | 2.8% | Apr 30, 2009 | The AV engine before DAT 5600 in McAfee VirusScan, Total Protection, Internet Security, SecurityShield for Microsoft ISA... |
| CVE-2009-1341 | — | — | 2.0% | Apr 30, 2009 | Memory leak in the dequote_bytea function in quote.c in the DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module before 2.0.0 f... |
| CVE-2009-1339 | — | — | 0.7% | Apr 30, 2009 | Cross-site request forgery (CSRF) vulnerability in TWiki before 4.3.1 allows remote authenticated users to hijack the au... |
| CVE-2009-1295 | — | — | 0.4% | Apr 30, 2009 | Apport before 0.108.4 on Ubuntu 8.04 LTS, before 0.119.2 on Ubuntu 8.10, and before 1.0-0ubuntu5.2 on Ubuntu 9.04 does n... |
| CVE-2009-1291 | — | — | 6.4% | Apr 30, 2009 | Stack-based buffer overflow in TIBCO SmartSockets before 6.8.2, SmartSockets Product Family (aka RTworks) before 4.0.5, ... |
| CVE-2009-1255 | — | — | 2.3% | Apr 30, 2009 | The process_stat function in (1) Memcached before 1.2.8 and (2) MemcacheDB 1.2.0 discloses (a) the contents of /proc/sel... |
| CVE-2009-0663 | — | — | 4.3% | Apr 30, 2009 | Heap-based buffer overflow in the DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module 1.49 for Perl might allow context-depend... |
| CVE-2009-1489 | — | — | 2.5% | Apr 29, 2009 | includes/user.php in Fungamez RC1 allows remote attackers to bypass authentication and gain administrative access by set... |
| CVE-2009-1488 | — | — | 2.0% | Apr 29, 2009 | Directory traversal vulnerability in admin/load.php in FunGamez RC1 allows remote attackers to include and execute arbit... |
| CVE-2009-1487 | — | — | 1.0% | Apr 29, 2009 | SQL injection vulnerability in pages/login.php in FunGamez RC1 allows remote attackers to execute arbitrary SQL commands... |
| CVE-2009-1486 | — | — | 2.3% | Apr 29, 2009 | Directory traversal vulnerability in pmscript.php in Flatchat 3.0 allows remote attackers to include and execute arbitra... |
| CVE-2009-1485 | — | — | 1.4% | Apr 29, 2009 | The logging feature in eMule Plus before 1.2e allows remote attackers to cause a denial of service (infinite loop) via u... |
| CVE-2009-1484 | — | — | 1.3% | Apr 29, 2009 | Cross-site scripting (XSS) vulnerability in the web mail interface feature in AXIGEN Mail Server 6.2.2 allows remote att... |
| CVE-2009-1483 | — | — | 4.1% | Apr 29, 2009 | Unrestricted file upload vulnerability in upload-file.php in Adam Patterson Studio Lounge Address Book 2.5, as reachable... |
| CVE-2009-1482 | — | — | 2.5% | Apr 29, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in action/AttachFile.py in MoinMoin 1.8.2 and earlier allow remote a... |
| CVE-2009-1481 | — | — | 1.2% | Apr 29, 2009 | SQL injection vulnerability in action.asp in PuterJam's Blog (PJBlog3) 3.0.6.170 allows remote attackers to execute arbi... |
| CVE-2009-1480 | — | — | 1.0% | Apr 29, 2009 | SQL injection vulnerability in index.php Pragyan CMS 2.6.4 allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2009-1478 | — | — | 0.7% | Apr 29, 2009 | Multiple unspecified vulnerabilities in the DTrace ioctl handlers in Sun Solaris 10, and OpenSolaris before snv_114, all... |
| CVE-2009-1431 | — | — | 8.0% | Apr 29, 2009 | XFR.EXE in the Intel File Transfer service in the console in Symantec Alert Management System 2 (AMS2), as used in Syman... |
| CVE-2009-1430 | — | — | 55.1% | Apr 29, 2009 | Multiple stack-based buffer overflows in IAO.EXE in the Intel Alert Originator Service in Symantec Alert Management Syst... |
| CVE-2009-1429 | — | — | 87.9% | Apr 29, 2009 | The Intel LANDesk Common Base Agent (CBA) in Symantec Alert Management System 2 (AMS2), as used in Symantec System Cente... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now