2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-1302 | — | — | 2.9% | Apr 22, 2009 | The browser engine in Mozilla Firefox 3.x before 3.0.9, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.16 allows ... |
| CVE-2009-0307 | — | — | 3.5% | Apr 22, 2009 | Cross-site scripting (XSS) vulnerability in the "Customize Statistics Page" (admin/statistics/ConfigureStatistics) in th... |
| CVE-2009-1360 | — | — | 3.2% | Apr 22, 2009 | The __inet6_check_established function in net/ipv6/inet6_hashtables.c in the Linux kernel before 2.6.29, when Network Na... |
| CVE-2009-1359 | — | — | 0.3% | Apr 22, 2009 | Unspecified vulnerability in the SCTP sockets implementation in Sun OpenSolaris snv_106 through snv_107 allows local use... |
| CVE-2009-1338 | — | — | 0.4% | Apr 22, 2009 | The kill_something_info function in kernel/signal.c in the Linux kernel before 2.6.28 does not consider PID namespaces w... |
| CVE-2009-1337 | — | — | 1.3% | Apr 22, 2009 | The exit_notify function in kernel/exit.c in the Linux kernel before 2.6.30-rc1 does not restrict exit signals when the ... |
| CVE-2009-1336 | — | — | 0.4% | Apr 22, 2009 | fs/nfs/client.c in the Linux kernel before 2.6.23 does not properly initialize a certain structure member that stores th... |
| CVE-2009-1358 | — | — | 4.4% | Apr 21, 2009 | apt-get in apt before 0.7.21 does not check for the correct error code from gpgv, which causes apt to treat a repository... |
| CVE-2009-1356 | — | — | 4.8% | Apr 21, 2009 | Stack-based buffer overflow in Elecard AVC HD Player allows remote attackers to execute arbitrary code via a long MP3 fi... |
| CVE-2009-1355 | — | — | 0.4% | Apr 21, 2009 | Stack-based buffer overflow in muxatmd in IBM AIX 5.2, 5.3, and 6.1 allows local users to gain privileges via a long fil... |
| CVE-2009-1354 | — | — | 2.3% | Apr 21, 2009 | Directory traversal vulnerability in Mongoose 2.4 allows remote attackers to read arbitrary files via a .. (dot dot) in ... |
| CVE-2009-1353 | — | — | 7.8% | Apr 21, 2009 | Buffer overflow in the http_parse_hex function in libz/misc.c in Zervit Webserver 0.02 allows remote attackers to cause ... |
| CVE-2009-1352 | — | — | 5.6% | Apr 21, 2009 | Stack-based buffer overflow in Dawningsoft PowerCHM 5.7 allows remote attackers to cause a denial of service (applicatio... |
| CVE-2009-1351 | — | — | 5.6% | Apr 21, 2009 | Heap-based buffer overflow in Apollo 37zz allows remote attackers to cause a denial of service (application crash) and p... |
| CVE-2009-1350 | — | — | 65.9% | Apr 21, 2009 | Unspecified vulnerability in xtagent.exe in Novell NetIdentity Client before 1.2.4 allows remote attackers to execute ar... |
| CVE-2009-1349 | — | — | 1.2% | Apr 21, 2009 | Cross-site scripting (XSS) vulnerability in C2Net Stronghold 2.3 allows remote attackers to inject arbitrary web script ... |
| CVE-2009-1266 | — | — | 1.6% | Apr 21, 2009 | Unspecified vulnerability in Wireshark before 1.0.7 has unknown impact and attack vectors. |
| CVE-2009-0718 | — | — | 7.9% | Apr 21, 2009 | Unspecified vulnerability in HP StorageWorks Storage Mirroring 5 before 5.1.1.1090.15 allows remote attackers to execute... |
| CVE-2009-0717 | — | — | 2.3% | Apr 21, 2009 | Unspecified vulnerability in HP StorageWorks Storage Mirroring 5 before 5.1.1.1090.15 allows remote attackers to cause a... |
| CVE-2009-0716 | — | — | 2.3% | Apr 21, 2009 | Unspecified vulnerability in HP StorageWorks Storage Mirroring 5 before 5.1.1.1090.15 allows remote attackers to cause a... |
| CVE-2009-0715 | — | — | 1.3% | Apr 21, 2009 | Unspecified vulnerability in Secure NaviCLI in HP Storage Essentials 6.0.2 through 6.0.4 allows remote authenticated use... |
| CVE-2009-1347 | — | — | 1.0% | Apr 20, 2009 | Multiple SQL injection vulnerabilities in stats/index.php in chCounter 3.1.3 allow remote attackers to execute arbitrary... |
| CVE-2009-1346 | — | — | 2.0% | Apr 20, 2009 | SQL injection vulnerability in publico/ficha.php in NetHoteles 3.0 allows remote attackers to execute arbitrary SQL comm... |
| CVE-2009-1345 | — | — | 1.0% | Apr 20, 2009 | SQL injection vulnerability in document.php in cpCommerce 1.2.8 allows remote attackers to execute arbitrary SQL command... |
| CVE-2009-1344 | — | — | 1.1% | Apr 20, 2009 | Cross-site scripting (XSS) vulnerability in the Localization client module 5.x before 5.x-1.2 and 6.x before 6.x-1.7, a ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now