2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-1343 | — | — | 1.1% | Apr 20, 2009 | Cross-site scripting (XSS) vulnerability in the Print (aka Printer, e-mail and PDF versions) module 5.x before 5.x-4.5 a... |
| CVE-2009-1342 | — | — | 1.1% | Apr 20, 2009 | Cross-site scripting (XSS) vulnerability in the CCK comment reference module 6.x before 6.x-1.2, a module for Drupal, al... |
| CVE-2009-1335 | — | — | 15.7% | Apr 17, 2009 | Microsoft Internet Explorer 7 and 8 on Windows XP and Vista allows remote attackers to cause a denial of service (applic... |
| CVE-2009-1334 | — | — | 1.8% | Apr 17, 2009 | Cross-site scripting (XSS) vulnerability in login/FilepathLogin.html in IBM Tivoli Continuous Data Protection (CDP) for ... |
| CVE-2009-1333 | — | — | 1.6% | Apr 17, 2009 | Cross-site scripting (XSS) vulnerability in refresh_rate.htm in the web interface on the HP Deskjet 6840 printer with fi... |
| CVE-2009-1332 | — | — | 1.9% | Apr 17, 2009 | The Online Help feature in Sun Java System Directory Server 5.2 and Enterprise Edition 5 allows remote attackers to dete... |
| CVE-2009-1331 | — | — | 18.1% | Apr 17, 2009 | Integer overflow in Microsoft Windows Media Player (WMP) 11.0.5721.5260 allows remote attackers to cause a denial of ser... |
| CVE-2009-1186 | — | — | 0.5% | Apr 17, 2009 | Buffer overflow in the util_path_encode function in udev/lib/libudev-util.c in udev before 1.4.1 allows local users to c... |
| CVE-2009-1185 | — | — | 81.5% | Apr 17, 2009 | udev before 1.4.1 does not verify whether a NETLINK message originates from kernel space, which allows local users to ga... |
| CVE-2009-0039 | — | — | 11.1% | Apr 17, 2009 | Multiple cross-site request forgery (CSRF) vulnerabilities in the web administration console in Apache Geronimo Applicat... |
| CVE-2009-0038 | — | — | 18.0% | Apr 17, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the web administration console in Apache Geronimo Application Ser... |
| CVE-2009-1330 | — | — | 21.7% | Apr 17, 2009 | Stack-based buffer overflow in Easy RM to MP3 Converter allows remote attackers to execute arbitrary code via a long fil... |
| CVE-2009-1329 | — | — | 5.8% | Apr 17, 2009 | Stack-based buffer overflow in Mini-stream Shadow Stream Recorder 3.0.1.7 allows remote attackers to execute arbitrary c... |
| CVE-2009-1328 | — | — | 7.1% | Apr 17, 2009 | Stack-based buffer overflow in Mini-stream RM-MP3 Converter 3.0.0.7 allows remote attackers to execute arbitrary code vi... |
| CVE-2009-1327 | — | — | 6.0% | Apr 17, 2009 | Stack-based buffer overflow in Mini-stream WM Downloader 3.0.0.9 allows remote attackers to execute arbitrary code via a... |
| CVE-2009-1326 | — | — | 7.1% | Apr 17, 2009 | Stack-based buffer overflow in Mini-stream RM Downloader 3.0.0.9 allows remote attackers to execute arbitrary code via a... |
| CVE-2009-1325 | — | — | 7.1% | Apr 17, 2009 | Stack-based buffer overflow in Mini-stream Ripper 3.0.1.1 allows remote attackers to execute arbitrary code via a long U... |
| CVE-2009-1324 | — | — | 16.5% | Apr 17, 2009 | Stack-based buffer overflow in Mini-stream ASX to MP3 Converter 3.0.0.7 allows remote attackers to execute arbitrary cod... |
| CVE-2009-1323 | — | — | 2.0% | Apr 17, 2009 | SQL injection vulnerability in body.asp in Web File Explorer 3.1 allows remote attackers to execute arbitrary SQL comman... |
| CVE-2009-1322 | — | — | 2.3% | Apr 17, 2009 | ASP Product Catalog 1.0 stores sensitive information under the web root with insufficient access control, which allows r... |
| CVE-2009-1321 | — | — | 1.5% | Apr 17, 2009 | Cross-site scripting (XSS) vulnerability in search.asp in ASP Product Catalog 1.0 allows remote attackers to inject arbi... |
| CVE-2009-1320 | — | — | 1.0% | Apr 17, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in include/zstore.php in Zazzle Store Builder 1.0.2 allow remote att... |
| CVE-2009-1319 | — | — | 2.3% | Apr 17, 2009 | Directory traversal vulnerability in includes/ini.inc.php in GuestCal 2.1 allows remote attackers to include and execute... |
| CVE-2009-1318 | — | — | 2.0% | Apr 17, 2009 | Directory traversal vulnerability in index.php in Jamroom 3.1.2, 3.2.3 through 3.2.6, 4.0.2, and possibly other versions... |
| CVE-2009-1317 | — | — | 0.9% | Apr 17, 2009 | Multiple SQL injection vulnerabilities in Aqua CMS 1.1, when magic_quotes_gpc is disabled, allow remote attackers to exe... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now