2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

CVE IDSeverityCVSSDescription
CVE-2009-0923Unspecified vulnerability in Kerberos Incremental Propagation in Solaris 10 and OpenSolaris snv_01 through snv_110 allow...
CVE-2009-0922PostgreSQL before 8.3.7, 8.2.13, 8.1.17, 8.0.21, and 7.4.25 allows remote authenticated users to cause a denial of servi...
CVE-2009-0919XAMPP installs multiple packages with insecure default passwords, which makes it easier for remote attackers to obtain a...
CVE-2009-0918Multiple unspecified vulnerabilities in DFLabs PTK 1.0.0 through 1.0.4 allow remote attackers to execute arbitrary comma...
CVE-2009-0917Cross-site scripting (XSS) vulnerability in DFLabs PTK 1.0.0 through 1.0.4 allows remote attackers to inject arbitrary w...
CVE-2009-0916Unspecified vulnerability in Opera before 9.64 has unknown impact and attack vectors, related to a "moderately severe is...
CVE-2009-0915Opera before 9.64 allows remote attackers to conduct cross-domain scripting attacks via unspecified vectors related to p...
CVE-2009-0914Opera before 9.64 allows remote attackers to execute arbitrary code via a crafted JPEG image that triggers memory corrup...
CVE-2009-0508The Servlet Engine/Web Container and JSP components in IBM WebSphere Application Server (WAS) 5.1.0, 5.1.1.19, 6.0.2 bef...
CVE-2009-0913Unspecified vulnerability in the keysock kernel module in Solaris 10 and OpenSolaris builds snv_01 through snv_108 allow...
CVE-2009-0912perl-MDK-Common 1.1.11 and 1.1.24, 1.2.9 through 1.2.14, and possibly other versions, in Mandriva Linux does not properl...
CVE-2009-0824Elaborate Bytes ElbyCDIO.sys 6.0.2.0 and earlier, as distributed in SlySoft AnyDVD before 6.5.2.6, Virtual CloneDrive 5....
CVE-2009-0587Multiple integer overflows in Evolution Data Server (aka evolution-data-server) before 2.24.5 allow context-dependent at...
CVE-2009-0586Integer overflow in the gst_vorbis_tag_add_coverart function (gst-libs/gst/tag/gstvorbistag.c) in vorbistag in gst-plugi...
CVE-2009-0585Integer overflow in the soup_base64_encode function in soup-misc.c in libsoup 2.x.x before 2.2.x, and 2.x before 2.24, a...
CVE-2009-0582The ntlm_challenge function in the NTLM SASL authentication mechanism in camel/camel-sasl-ntlm.c in Camel in Evolution D...
CVE-2009-0143Apple iTunes before 8.1 does not properly inform the user about the origin of an authentication request, which makes it ...
CVE-2009-0016Apple iTunes before 8.1 on Windows allows remote attackers to cause a denial of service (infinite loop) via a Digital Au...
CVE-2009-0887Integer signedness error in the _pam_StrTok function in libpam/pam_misc.c in Linux-PAM (aka pam) 1.0.3 and earlier, when...
CVE-2009-0886Directory traversal vulnerability in login.php in OneOrZero Helpdesk 1.6.5.7 and earlier allows remote attackers to read...
CVE-2009-0885Multiple heap-based buffer overflows in Media Commands 1.0 allow remote attackers to execute arbitrary code or cause a d...
CVE-2009-0884Buffer overflow in FileZilla Server before 0.9.31 allows remote attackers to cause a denial of service via unspecified v...
CVE-2009-0883SQL injection vulnerability in Blue Eye CMS 1.0.0 and earlier, when magic_quotes_gpc is disabled, allows remote attacker...
CVE-2009-0882Multiple SQL injection vulnerabilities in nForum 1.5 allow remote attackers to execute arbitrary SQL commands via the (1...
CVE-2009-0881SQL injection vulnerability in ejemplo/paises.php in isiAJAX 1 allows remote attackers to execute arbitrary SQL commands...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now