2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0923 | — | — | 2.4% | Mar 17, 2009 | Unspecified vulnerability in Kerberos Incremental Propagation in Solaris 10 and OpenSolaris snv_01 through snv_110 allow... |
| CVE-2009-0922 | — | — | 10.2% | Mar 17, 2009 | PostgreSQL before 8.3.7, 8.2.13, 8.1.17, 8.0.21, and 7.4.25 allows remote authenticated users to cause a denial of servi... |
| CVE-2009-0919 | — | — | 6.8% | Mar 16, 2009 | XAMPP installs multiple packages with insecure default passwords, which makes it easier for remote attackers to obtain a... |
| CVE-2009-0918 | — | — | 2.7% | Mar 16, 2009 | Multiple unspecified vulnerabilities in DFLabs PTK 1.0.0 through 1.0.4 allow remote attackers to execute arbitrary comma... |
| CVE-2009-0917 | — | — | 1.5% | Mar 16, 2009 | Cross-site scripting (XSS) vulnerability in DFLabs PTK 1.0.0 through 1.0.4 allows remote attackers to inject arbitrary w... |
| CVE-2009-0916 | — | — | 2.7% | Mar 16, 2009 | Unspecified vulnerability in Opera before 9.64 has unknown impact and attack vectors, related to a "moderately severe is... |
| CVE-2009-0915 | — | — | 2.9% | Mar 16, 2009 | Opera before 9.64 allows remote attackers to conduct cross-domain scripting attacks via unspecified vectors related to p... |
| CVE-2009-0914 | — | — | 4.8% | Mar 16, 2009 | Opera before 9.64 allows remote attackers to execute arbitrary code via a crafted JPEG image that triggers memory corrup... |
| CVE-2009-0508 | — | — | 2.9% | Mar 16, 2009 | The Servlet Engine/Web Container and JSP components in IBM WebSphere Application Server (WAS) 5.1.0, 5.1.1.19, 6.0.2 bef... |
| CVE-2009-0913 | — | — | 0.4% | Mar 16, 2009 | Unspecified vulnerability in the keysock kernel module in Solaris 10 and OpenSolaris builds snv_01 through snv_108 allow... |
| CVE-2009-0912 | — | — | 0.4% | Mar 16, 2009 | perl-MDK-Common 1.1.11 and 1.1.24, 1.2.9 through 1.2.14, and possibly other versions, in Mandriva Linux does not properl... |
| CVE-2009-0824 | — | — | 0.7% | Mar 14, 2009 | Elaborate Bytes ElbyCDIO.sys 6.0.2.0 and earlier, as distributed in SlySoft AnyDVD before 6.5.2.6, Virtual CloneDrive 5.... |
| CVE-2009-0587 | — | — | 3.3% | Mar 14, 2009 | Multiple integer overflows in Evolution Data Server (aka evolution-data-server) before 2.24.5 allow context-dependent at... |
| CVE-2009-0586 | — | — | 5.5% | Mar 14, 2009 | Integer overflow in the gst_vorbis_tag_add_coverart function (gst-libs/gst/tag/gstvorbistag.c) in vorbistag in gst-plugi... |
| CVE-2009-0585 | — | — | 4.0% | Mar 14, 2009 | Integer overflow in the soup_base64_encode function in soup-misc.c in libsoup 2.x.x before 2.2.x, and 2.x before 2.24, a... |
| CVE-2009-0582 | — | — | 2.0% | Mar 14, 2009 | The ntlm_challenge function in the NTLM SASL authentication mechanism in camel/camel-sasl-ntlm.c in Camel in Evolution D... |
| CVE-2009-0143 | — | — | 1.9% | Mar 14, 2009 | Apple iTunes before 8.1 does not properly inform the user about the origin of an authentication request, which makes it ... |
| CVE-2009-0016 | — | — | 2.0% | Mar 14, 2009 | Apple iTunes before 8.1 on Windows allows remote attackers to cause a denial of service (infinite loop) via a Digital Au... |
| CVE-2009-0887 | — | — | 1.9% | Mar 12, 2009 | Integer signedness error in the _pam_StrTok function in libpam/pam_misc.c in Linux-PAM (aka pam) 1.0.3 and earlier, when... |
| CVE-2009-0886 | — | — | 6.5% | Mar 12, 2009 | Directory traversal vulnerability in login.php in OneOrZero Helpdesk 1.6.5.7 and earlier allows remote attackers to read... |
| CVE-2009-0885 | — | — | 8.7% | Mar 12, 2009 | Multiple heap-based buffer overflows in Media Commands 1.0 allow remote attackers to execute arbitrary code or cause a d... |
| CVE-2009-0884 | — | — | 3.4% | Mar 12, 2009 | Buffer overflow in FileZilla Server before 0.9.31 allows remote attackers to cause a denial of service via unspecified v... |
| CVE-2009-0883 | — | — | 0.9% | Mar 12, 2009 | SQL injection vulnerability in Blue Eye CMS 1.0.0 and earlier, when magic_quotes_gpc is disabled, allows remote attacker... |
| CVE-2009-0882 | — | — | 0.9% | Mar 12, 2009 | Multiple SQL injection vulnerabilities in nForum 1.5 allow remote attackers to execute arbitrary SQL commands via the (1... |
| CVE-2009-0881 | — | — | 1.0% | Mar 12, 2009 | SQL injection vulnerability in ejemplo/paises.php in isiAJAX 1 allows remote attackers to execute arbitrary SQL commands... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now