2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0088 | — | — | 28.4% | Apr 15, 2009 | The WordPerfect 6.x Converter (WPFT632.CNV, 1998.1.27.0) in Microsoft Office Word 2000 SP3 and Microsoft Office Converte... |
| CVE-2009-0087 | — | — | 25.9% | Apr 15, 2009 | Unspecified vulnerability in the Word 6 text converter in WordPad in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Ser... |
| CVE-2009-0086 | — | — | 14.1% | Apr 15, 2009 | Integer underflow in Windows HTTP Services (aka WinHTTP) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 ... |
| CVE-2009-0084 | — | — | 31.8% | Apr 15, 2009 | Use-after-free vulnerability in DirectShow in Microsoft DirectX 8.1 and 9.0 allows remote attackers to execute arbitrary... |
| CVE-2009-0080 | — | — | 2.4% | Apr 15, 2009 | The ThreadPool class in Windows Vista Gold and SP1, and Server 2008, does not properly implement isolation among a set o... |
| CVE-2009-0079 | — | — | 4.1% | Apr 15, 2009 | The RPCSS service in Microsoft Windows XP SP2 and SP3 and Server 2003 SP1 and SP2 does not properly implement isolation ... |
| CVE-2009-0078 | — | — | 2.7% | Apr 15, 2009 | The Windows Management Instrumentation (WMI) provider in Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vist... |
| CVE-2009-0077 | — | — | 78.5% | Apr 15, 2009 | The firewall engine in Microsoft Forefront Threat Management Gateway, Medium Business Edition (TMG MBE); and Internet Se... |
| CVE-2009-1292 | — | — | 0.4% | Apr 14, 2009 | UCM-CQ in IBM Rational ClearCase 7.0.0.x before 7.0.0.5, 7.0.1.x before 7.0.1.4, and 7.1.x before 7.1.0.1 on Linux and A... |
| CVE-2009-0792 | — | — | 4.0% | Apr 14, 2009 | Multiple integer overflows in icc.c in the International Color Consortium (ICC) Format library (aka icclib), as used in ... |
| CVE-2009-0159 | — | — | 13.2% | Apr 14, 2009 | Stack-based buffer overflow in the cookedprint function in ntpq/ntpq.c in ntpq in NTP before 4.2.4p7-RC2 allows remote N... |
| CVE-2009-1290 | — | — | 1.0% | Apr 13, 2009 | Multiple cross-site request forgery (CSRF) vulnerabilities in the web administration interface in the Advanced Managemen... |
| CVE-2009-1289 | — | — | 1.1% | Apr 13, 2009 | private/login.ssi in the Advanced Management Module (AMM) on the IBM BladeCenter, including the BladeCenter H with BPET3... |
| CVE-2009-1288 | — | — | 1.8% | Apr 13, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the Advanced Management Module (AMM) on the IBM BladeCenter, incl... |
| CVE-2009-1287 | — | — | 23.1% | Apr 13, 2009 | Cross-site scripting (XSS) vulnerability in Cisco Subscriber Edge Services Manager (SESM) allows remote attackers to inj... |
| CVE-2009-1286 | — | — | 1.8% | Apr 13, 2009 | The IMAP task in the server in IBM Lotus Domino 8.0.2 before FP1 IF1 and 8.5 before IF3 allows remote attackers to cause... |
| CVE-2009-1269 | — | — | 2.0% | Apr 13, 2009 | Unspecified vulnerability in Wireshark 0.99.6 through 1.0.6 allows remote attackers to cause a denial of service (crash)... |
| CVE-2009-1268 | — | — | 1.7% | Apr 13, 2009 | The Check Point High-Availability Protocol (CPHAP) dissector in Wireshark 0.9.6 through 1.0.6 allows remote attackers to... |
| CVE-2009-1267 | — | — | 1.8% | Apr 13, 2009 | Unspecified vulnerability in the LDAP dissector in Wireshark 0.99.2 through 1.0.6, when running on Windows, allows remot... |
| CVE-2009-1244 | — | — | 2.0% | Apr 13, 2009 | Unspecified vulnerability in the virtual machine display function in VMware Workstation 6.5.1 and earlier; VMware Player... |
| CVE-2009-0794 | — | — | 3.0% | Apr 13, 2009 | Integer overflow in the PulseAudioTargetDataL class in src/java/org/classpath/icedtea/pulseaudio/PulseAudioTargetDataLin... |
| CVE-2009-0218 | — | — | 4.1% | Apr 13, 2009 | Insecure method vulnerability in Particle Software IntraLaunch Application Launcher ActiveX control in IntraLaunch.ocx, ... |
| CVE-2009-1284 | — | — | 11.9% | Apr 9, 2009 | Buffer overflow in BibTeX 0.99 allows context-dependent attackers to cause a denial of service (memory corruption and cr... |
| CVE-2009-1283 | — | — | 1.3% | Apr 9, 2009 | glFusion before 1.1.3 performs authentication with a user-provided password hash instead of a password, which allows rem... |
| CVE-2009-1282 | — | — | 2.7% | Apr 9, 2009 | SQL injection vulnerability in private/system/lib-session.php in glFusion 1.1.2 and earlier allows remote attackers to e... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now