2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-1428 | — | — | 2.3% | Apr 29, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in ccLgView.exe in the Symantec Log Viewer, as used in Symantec Anti... |
| CVE-2009-0719 | — | — | 0.3% | Apr 29, 2009 | Unspecified vulnerability in useradd in HP HP-UX B.11.11, B.11.23, and B.11.31 allows local users to access arbitrary fi... |
| CVE-2009-1463 | — | — | 1.6% | Apr 28, 2009 | Static code injection vulnerability in razorCMS before 0.4 allows remote attackers to inject arbitrary PHP code into any... |
| CVE-2009-1462 | — | — | 0.4% | Apr 28, 2009 | The Security Manager in razorCMS before 0.4 does not verify the permissions of every file owned by the apache user accou... |
| CVE-2009-1461 | — | — | 0.9% | Apr 28, 2009 | Cross-site scripting (XSS) vulnerability in the Create New Page form in razorCMS 0.3 RC2 and earlier allows remote authe... |
| CVE-2009-1460 | — | — | 0.4% | Apr 28, 2009 | razorCMS before 0.4 uses weak permissions for (1) admin/core/admin_config.php, which allows local users to obtain the ad... |
| CVE-2009-1459 | — | — | 0.7% | Apr 28, 2009 | Cross-site request forgery (CSRF) vulnerability in razorCMS before 0.4 allows remote attackers to hijack the authenticat... |
| CVE-2009-1458 | — | — | 1.8% | Apr 28, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in razorCMS before 0.4 allow remote attackers to ... |
| CVE-2009-1457 | — | — | 1.0% | Apr 28, 2009 | Cross-site scripting (XSS) vulnerability in player.php in Nuke Evolution Xtreme 2.x allows remote attackers to inject ar... |
| CVE-2009-1456 | — | — | 2.1% | Apr 28, 2009 | Directory traversal vulnerability in admin.php in Malleo 1.2.3 allows remote authenticated administrators to include and... |
| CVE-2009-1455 | — | — | 0.6% | Apr 28, 2009 | Multiple cross-site request forgery (CSRF) vulnerabilities in WebCollab before 2.50 (aka Billy Goat) allow remote attack... |
| CVE-2009-1454 | — | — | 1.2% | Apr 28, 2009 | Cross-site scripting (XSS) vulnerability in tasks.php in WebCollab before 2.50 (aka Billy Goat) allows remote attackers ... |
| CVE-2009-1453 | — | — | 0.9% | Apr 28, 2009 | SQL injection vulnerability in class.eport.php in Tiny Blogr 1.0.0 rc4, when magic_quotes_gpc is disabled, allows remote... |
| CVE-2009-1452 | — | — | 2.3% | Apr 28, 2009 | Multiple PHP remote file inclusion vulnerabilities in theme/format.php in SMA-DB 0.3.13 allow remote attackers to execut... |
| CVE-2009-1451 | — | — | 1.3% | Apr 28, 2009 | Cross-site scripting (XSS) vulnerability in startpage.php in SMA-DB 0.3.12 allows remote attackers to inject arbitrary w... |
| CVE-2009-1450 | — | — | 2.1% | Apr 28, 2009 | PHP remote file inclusion vulnerability in format.php in SMA-DB 0.3.12 allows remote attackers to execute arbitrary PHP ... |
| CVE-2009-1449 | — | — | 5.9% | Apr 27, 2009 | Stack-based buffer overflow in PortableApps CoolPlayer Portable (aka CoolPlayer+ Portable) 2.19.1 allows remote attacker... |
| CVE-2009-1448 | — | — | 1.0% | Apr 27, 2009 | Cross-site scripting (XSS) vulnerability in apricot.php in LovPop.net APRICOT, probably 1.20, allows remote attackers to... |
| CVE-2009-1190 | — | — | 2.8% | Apr 27, 2009 | Algorithmic complexity vulnerability in the java.util.regex.Pattern.compile method in Sun Java Development Kit (JDK) bef... |
| CVE-2009-1447 | — | — | 3.5% | Apr 27, 2009 | Unrestricted file upload vulnerability in admin/editor/image.php in e-cart.biz Free Shopping Cart allows remote attacker... |
| CVE-2009-1446 | — | — | 3.4% | Apr 27, 2009 | Unrestricted file upload vulnerability in upload.php in Elkagroup Image Gallery 1.0 allows remote authenticated users to... |
| CVE-2009-1445 | — | — | 6.1% | Apr 27, 2009 | Multiple directory traversal vulnerabilities in WebPortal CMS 0.8-beta allow remote attackers to (1) read arbitrary file... |
| CVE-2009-1444 | — | — | 2.3% | Apr 27, 2009 | PHP remote file inclusion vulnerability in indexk.php in WebPortal CMS 0.8-beta allows remote attackers to execute arbit... |
| CVE-2009-1443 | — | — | 4.0% | Apr 27, 2009 | Multiple unspecified vulnerabilities in the Server component in OCS Inventory NG before 1.02 have unknown impact and att... |
| CVE-2009-1440 | — | — | 1.5% | Apr 27, 2009 | Incomplete blacklist vulnerability in DownloadListCtrl.cpp in amule 2.2.4 allows remote attackers to conduct argument in... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now