2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

CVE IDSeverityCVSSDescription
CVE-2009-1091Cross-site scripting (XSS) vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to injec...
CVE-2009-1090Directory traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to include and ...
CVE-2009-1089Absolute path traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to read arb...
CVE-2009-1088Hannon Hill Cascade Server 5.7 and other versions allows remote authenticated users to execute arbitrary programs or Jav...
CVE-2009-1087Multiple argument injection vulnerabilities in PPLive.exe in PPLive 1.9.21 and earlier allow remote attackers to execute...
CVE-2009-1086Heap-based buffer overflow in the ldns_rr_new_frm_str_internal function in ldns 1.4.x allows remote attackers to cause a...
CVE-2009-1085Piwik 0.2.32 and earlier stores sensitive information under the web root with insufficient access control, which allows ...
CVE-2009-1084Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not properly restrict access to the System Configuration obj...
CVE-2009-1083Sun Java System Identity Manager (IdM) 7.0 through 8.0 on Linux, AIX, Solaris, and HP-UX permits "control characters" in...
CVE-2009-1082Sun Java System Identity Manager (IdM) 7.0 through 8.0 allows remote authenticated users to gain privileges by submittin...
CVE-2009-1081Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Identity Manager (IdM) 7.0 through 8.0 allow remo...
CVE-2009-1080Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Identity Manager (IdM) 7.0 through 8.0 allow remo...
CVE-2009-1079Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Identity Manager (IdM) 7.0 through 8.0 allow remo...
CVE-2009-1078Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not enforce the expected privilege requirements for (1) dele...
CVE-2009-1077The Change My Password implementation in the admin interface in Sun Java System Identity Manager (IdM) 7.0 through 8.0 d...
CVE-2009-1076Sun Java System Identity Manager (IdM) 7.0 through 8.0 responds differently to failed use of the end-user question-based...
CVE-2009-1075Sun Java System Identity Manager (IdM) 7.0 through 8.0 responds differently to failed use of the Forgot Password feature...
CVE-2009-1074Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not use SSL in all expected circumstances, which makes it ea...
CVE-2009-0215Stack-based buffer overflow in the GetXMLValue method in the IBM Access Support ActiveX control in IbmEgath.dll, as dist...
CVE-2009-1072nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thre...
CVE-2009-1062Adobe Acrobat Reader 9 before 9.1, 8 before 8.1.4, and 7 before 7.1.1 might allow remote attackers to trigger memory cor...
CVE-2009-1061Unspecified vulnerability in Adobe Acrobat Reader 9 before 9.1, 8 before 8.1.4, and 7 before 7.1.1 might allow remote at...
CVE-2009-0928Heap-based buffer overflow in Adobe Acrobat Reader and Acrobat Professional 7.1.0, 8.1.3, 9.0.0, and other versions allo...
CVE-2009-0921Multiple heap-based buffer overflows in OvCgi/Toolbar.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7...
CVE-2009-0920Stack-based buffer overflow in OvCgi/Toolbar.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now