2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0845 | — | — | 5.6% | Mar 27, 2009 | The spnego_gss_accept_sec_context function in lib/gssapi/spnego/spnego_mech.c in MIT Kerberos 5 (aka krb5) 1.5 through 1... |
| CVE-2009-0789 | — | — | 2.6% | Mar 27, 2009 | OpenSSL before 0.9.8k on WIN64 and certain other platforms does not properly handle a malformed ASN.1 structure, which a... |
| CVE-2009-0637 | — | — | 3.3% | Mar 27, 2009 | The SCP server in Cisco IOS 12.2 through 12.4, when Role-Based CLI Access is enabled, does not enforce the CLI view conf... |
| CVE-2009-0636 | — | — | 2.9% | Mar 27, 2009 | Unspecified vulnerability in Cisco IOS 12.0 through 12.4, when SIP voice services are enabled, allows remote attackers t... |
| CVE-2009-0635 | — | — | 2.5% | Mar 27, 2009 | Memory leak in the Cisco Tunneling Control Protocol (cTCP) encapsulation feature in Cisco IOS 12.4, when an Easy VPN (ak... |
| CVE-2009-0634 | — | — | 2.8% | Mar 27, 2009 | Multiple unspecified vulnerabilities in the home agent (HA) implementation in the (1) Mobile IP NAT Traversal feature an... |
| CVE-2009-0633 | — | — | 2.5% | Mar 27, 2009 | Multiple unspecified vulnerabilities in the (1) Mobile IP NAT Traversal feature and (2) Mobile IPv6 subsystem in Cisco I... |
| CVE-2009-0630 | — | — | 1.8% | Mar 27, 2009 | The (1) Cisco Unified Communications Manager Express; (2) SIP Gateway Signaling Support Over Transport Layer Security (T... |
| CVE-2009-0629 | — | — | 4.0% | Mar 27, 2009 | The (1) Airline Product Set (aka ALPS), (2) Serial Tunnel Code (aka STUN), (3) Block Serial Tunnel Code (aka BSTUN), (4)... |
| CVE-2009-0628 | — | — | 1.9% | Mar 27, 2009 | Memory leak in the SSLVPN feature in Cisco IOS 12.3 through 12.4 allows remote attackers to cause a denial of service (m... |
| CVE-2009-0626 | — | — | 2.0% | Mar 27, 2009 | The SSLVPN feature in Cisco IOS 12.3 through 12.4 allows remote attackers to cause a denial of service (device reload or... |
| CVE-2009-0591 | — | — | 2.7% | Mar 27, 2009 | The CMS_verify function in OpenSSL 0.9.8h through 0.9.8j, when CMS is enabled, does not properly handle errors associate... |
| CVE-2009-0590 | — | — | 6.2% | Mar 27, 2009 | The ASN1_STRING_print_ex function in OpenSSL before 0.9.8k allows remote attackers to cause a denial of service (invalid... |
| CVE-2009-0631 | — | — | 1.9% | Mar 27, 2009 | Unspecified vulnerability in Cisco IOS 12.0 through 12.4, when configured with (1) IP Service Level Agreements (SLAs) Re... |
| CVE-2009-1169 | — | — | 10.5% | Mar 27, 2009 | The txMozillaXSLTProcessor::TransformToDoc function in Mozilla Firefox before 3.0.8 and SeaMonkey before 1.1.16 allows r... |
| CVE-2009-1152 | — | — | 4.5% | Mar 26, 2009 | Siemens Gigaset SE461 WiMAX router 1.5-BL024.9.6401, and possibly other versions, allows remote attackers to cause a den... |
| CVE-2009-1151 | CRITICAL | 9.8 | 95.4% | Mar 26, 2009 | Static code injection vulnerability in setup.php in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allows remo... |
| CVE-2009-1150 | — | — | 1.6% | Mar 26, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the export page (display_export.lib.php) in phpMyAdmin 2.11.x bef... |
| CVE-2009-1149 | — | — | 1.4% | Mar 26, 2009 | CRLF injection vulnerability in bs_disp_as_mime_type.php in the BLOB streaming feature in phpMyAdmin before 3.1.3.1 allo... |
| CVE-2009-1148 | — | — | 1.6% | Mar 26, 2009 | Directory traversal vulnerability in bs_disp_as_mime_type.php in the BLOB streaming feature in phpMyAdmin before 3.1.3.1... |
| CVE-2009-0782 | — | — | — | Mar 26, 2009 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2009-0589 | — | — | — | Mar 26, 2009 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2009-1071 | — | — | 6.0% | Mar 26, 2009 | Stack-based buffer overflow in Icarus 2.0 allows remote attackers to cause a denial of service (application crash) or ex... |
| CVE-2009-1070 | — | — | 1.7% | Mar 26, 2009 | Cross-site scripting (XSS) vulnerability in system/index.php in ExpressionEngine 1.6.4 through 1.6.6, and possibly earli... |
| CVE-2009-1069 | — | — | 1.2% | Mar 26, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the node edit form feature in Drupal Content Construction Kit (CC... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now