2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-1328 | — | — | 7.1% | Apr 17, 2009 | Stack-based buffer overflow in Mini-stream RM-MP3 Converter 3.0.0.7 allows remote attackers to execute arbitrary code vi... |
| CVE-2009-1327 | — | — | 6.0% | Apr 17, 2009 | Stack-based buffer overflow in Mini-stream WM Downloader 3.0.0.9 allows remote attackers to execute arbitrary code via a... |
| CVE-2009-1326 | — | — | 7.1% | Apr 17, 2009 | Stack-based buffer overflow in Mini-stream RM Downloader 3.0.0.9 allows remote attackers to execute arbitrary code via a... |
| CVE-2009-1325 | — | — | 7.1% | Apr 17, 2009 | Stack-based buffer overflow in Mini-stream Ripper 3.0.1.1 allows remote attackers to execute arbitrary code via a long U... |
| CVE-2009-1324 | — | — | 16.5% | Apr 17, 2009 | Stack-based buffer overflow in Mini-stream ASX to MP3 Converter 3.0.0.7 allows remote attackers to execute arbitrary cod... |
| CVE-2009-1323 | — | — | 2.0% | Apr 17, 2009 | SQL injection vulnerability in body.asp in Web File Explorer 3.1 allows remote attackers to execute arbitrary SQL comman... |
| CVE-2009-1322 | — | — | 2.3% | Apr 17, 2009 | ASP Product Catalog 1.0 stores sensitive information under the web root with insufficient access control, which allows r... |
| CVE-2009-1321 | — | — | 1.5% | Apr 17, 2009 | Cross-site scripting (XSS) vulnerability in search.asp in ASP Product Catalog 1.0 allows remote attackers to inject arbi... |
| CVE-2009-1320 | — | — | 1.0% | Apr 17, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in include/zstore.php in Zazzle Store Builder 1.0.2 allow remote att... |
| CVE-2009-1319 | — | — | 2.3% | Apr 17, 2009 | Directory traversal vulnerability in includes/ini.inc.php in GuestCal 2.1 allows remote attackers to include and execute... |
| CVE-2009-1318 | — | — | 2.0% | Apr 17, 2009 | Directory traversal vulnerability in index.php in Jamroom 3.1.2, 3.2.3 through 3.2.6, 4.0.2, and possibly other versions... |
| CVE-2009-1317 | — | — | 0.9% | Apr 17, 2009 | Multiple SQL injection vulnerabilities in Aqua CMS 1.1, when magic_quotes_gpc is disabled, allow remote attackers to exe... |
| CVE-2009-1316 | — | — | 1.0% | Apr 17, 2009 | Multiple SQL injection vulnerabilities in AbleSpace 1.0 allow remote attackers to execute arbitrary SQL commands via the... |
| CVE-2009-1315 | — | — | 1.7% | Apr 17, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in AbleSpace 1.0 allow remote attackers to inject arbitrary web scri... |
| CVE-2009-1314 | — | — | 10.1% | Apr 17, 2009 | body.asp in Web File Explorer 3.1 allows remote attackers to create arbitrary files and execute arbitrary code via the s... |
| CVE-2009-0946 | — | — | 8.5% | Apr 17, 2009 | Multiple integer overflows in FreeType 2.3.9 and earlier allow remote attackers to execute arbitrary code via vectors re... |
| CVE-2009-1301 | — | — | 5.4% | Apr 16, 2009 | Integer signedness error in the store_id3_text function in the ID3v2 code in mpg123 before 1.7.2 allows remote attackers... |
| CVE-2009-1300 | — | — | 1.9% | Apr 16, 2009 | apt 0.7.20 does not check when the date command returns an "invalid date" error, which can prevent apt from loading secu... |
| CVE-2009-1294 | — | — | 4.7% | Apr 16, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in web/guest/home in the Liferay 4.3.0 portal in Novell Teaming 1.0 ... |
| CVE-2009-1293 | — | — | 1.8% | Apr 16, 2009 | The web login functionality (c/portal/login) in Novell Teaming 1.0 through SP3 (1.0.3) generates different error message... |
| CVE-2009-1285 | — | — | 10.9% | Apr 16, 2009 | Static code injection vulnerability in the getConfigFile function in setup/lib/ConfigFile.class.php in phpMyAdmin 3.x be... |
| CVE-2009-0579 | — | — | 0.4% | Apr 16, 2009 | Linux-PAM before 1.0.4 does not enforce the minimum password age (MINDAYS) as specified in /etc/shadow, which allows loc... |
| CVE-2009-0196 | — | — | 7.4% | Apr 16, 2009 | Heap-based buffer overflow in the big2_decode_symbol_dict function (jbig2_symbol_dict.c) in the JBIG2 decoding library (... |
| CVE-2009-1119 | — | — | 5.4% | Apr 15, 2009 | Multiple heap-based buffer overflows in EMC RepliStor 6.2 before SP5 and 6.3 before SP2 allow remote attackers to execut... |
| CVE-2009-1017 | — | — | 2.6% | Apr 15, 2009 | Unspecified vulnerability in the BI Publisher component in Oracle Application Server 5.6.2, 10.1.3.2.1, 10.1.3.3.3, and ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now