2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0164 | — | — | 2.9% | Apr 24, 2009 | The web interface for CUPS before 1.3.10 does not validate the HTTP Host header in a client request, which makes it easi... |
| CVE-2009-0064 | — | — | 2.2% | Apr 24, 2009 | Multiple unspecified vulnerabilities in the Control Center in Symantec Brightmail Gateway Appliance before 8.0.1 allow r... |
| CVE-2009-0063 | — | — | 1.3% | Apr 24, 2009 | Cross-site scripting (XSS) vulnerability in the Control Center in Symantec Brightmail Gateway Appliance before 8.0.1 all... |
| CVE-2009-1411 | — | — | 2.3% | Apr 24, 2009 | SQL injection vulnerability in events/inc/events.inc.php in the Events plugin for Seditio CMS 1.0 allows remote attacker... |
| CVE-2009-1410 | — | — | 1.0% | Apr 24, 2009 | SQL injection vulnerability in index.php in Quick.Cms.Lite 0.5 allows remote attackers to execute arbitrary SQL commands... |
| CVE-2009-1409 | — | — | 0.9% | Apr 24, 2009 | SQL injection vulnerability in usersettings.php in e107 0.7.15 and earlier, when "Extended User Fields" is enabled and m... |
| CVE-2009-1408 | — | — | 2.0% | Apr 24, 2009 | Cross-site scripting (XSS) vulnerability in webSPELL 4.2.0c allows remote attackers to inject arbitrary web script or HT... |
| CVE-2009-1407 | — | — | 1.9% | Apr 24, 2009 | Directory traversal vulnerability in config.php in NotFTP 1.3.1 allows remote attackers to read arbitrary files via a ..... |
| CVE-2009-1406 | — | — | 1.9% | Apr 24, 2009 | Directory traversal vulnerability in cms_detect.php in TotalCalendar 2.4 allows remote attackers to include and execute ... |
| CVE-2009-1405 | — | — | 1.9% | Apr 24, 2009 | Directory traversal vulnerability in index.php in PastelCMS 0.8.0, when magic_quotes_gpc is disabled, allows remote atta... |
| CVE-2009-1404 | — | — | 0.9% | Apr 24, 2009 | SQL injection vulnerability in admin.php in PastelCMS 0.8.0, when magic_quotes_gpc is disabled, allows remote attackers ... |
| CVE-2009-1403 | — | — | 1.0% | Apr 24, 2009 | SQL injection vulnerability in product_info.php in CRE Loaded 6.2 allows remote attackers to execute arbitrary SQL comma... |
| CVE-2009-1188 | — | — | 7.2% | Apr 23, 2009 | Integer overflow in the JBIG2 decoding feature in the SplashBitmap::SplashBitmap function in SplashBitmap.cc in Xpdf 3.x... |
| CVE-2009-1187 | — | — | 7.2% | Apr 23, 2009 | Integer overflow in the JBIG2 decoding feature in Poppler before 0.10.6 allows remote attackers to cause a denial of ser... |
| CVE-2009-0165 | — | — | 3.6% | Apr 23, 2009 | Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, as used in Poppler and other products, when running o... |
| CVE-2009-1357 | — | — | 7.2% | Apr 23, 2009 | CRLF injection vulnerability in da/DA/Login in Sun Java System Delegated Administrator 6.2 through 6.4 allows remote att... |
| CVE-2009-1191 | — | — | 12.4% | Apr 23, 2009 | mod_proxy_ajp.c in the mod_proxy_ajp module in the Apache HTTP Server 2.2.11 allows remote attackers to obtain sensitive... |
| CVE-2009-1183 | — | — | 3.8% | Apr 23, 2009 | The JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products all... |
| CVE-2009-1182 | — | — | 7.3% | Apr 23, 2009 | Multiple buffer overflows in the JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0... |
| CVE-2009-1181 | — | — | 3.8% | Apr 23, 2009 | The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows ... |
| CVE-2009-1180 | — | — | 5.4% | Apr 23, 2009 | The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows ... |
| CVE-2009-1179 | — | — | 5.5% | Apr 23, 2009 | Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and ot... |
| CVE-2009-0800 | — | — | 5.5% | Apr 23, 2009 | Multiple "input validation flaws" in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler befo... |
| CVE-2009-0799 | — | — | 3.8% | Apr 23, 2009 | The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows ... |
| CVE-2009-0664 | — | — | 2.0% | Apr 23, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Mahara 1.0.x before 1.0.11 and 1.1.x before 1.1.3 allow remote at... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now