2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0836 | — | — | 38.6% | Mar 10, 2009 | Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 1120 and 1301, does not require user confirmatio... |
| CVE-2009-0191 | — | — | 5.0% | Mar 10, 2009 | Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 3.0.2009.1301, does not properly handle a JBIG2 ... |
| CVE-2009-0085 | — | — | 15.2% | Mar 10, 2009 | The Secure Channel (aka SChannel) authentication component in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP... |
| CVE-2009-0083 | — | — | 1.5% | Mar 10, 2009 | The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 does not properly handle invalid pointers,... |
| CVE-2009-0082 | HIGH | 7.8 | 1.4% | Mar 10, 2009 | The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 d... |
| CVE-2009-0081 | — | — | 32.1% | Mar 10, 2009 | The graphics device interface (GDI) implementation in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2... |
| CVE-2009-0868 | — | — | 1.9% | Mar 10, 2009 | CRLF injection vulnerability in the WebLink template in Fujitsu Jasmine2000 Enterprise Edition allows remote attackers t... |
| CVE-2009-0867 | — | — | 1.2% | Mar 10, 2009 | The HRM-S service in Fujitsu Enhanced Support Facility 3.0 and 3.0.1 allows remote attackers to obtain (1) hardware and ... |
| CVE-2009-0866 | — | — | 2.5% | Mar 10, 2009 | pHNews Alpha 1 stores sensitive information under the web root with insufficient access control, which allows remote att... |
| CVE-2009-0865 | — | — | 5.5% | Mar 10, 2009 | Directory traversal vulnerability in the SnapShotToFile method in the GeoVision LiveX (aka LiveX_v8200) ActiveX control ... |
| CVE-2009-0864 | — | — | 2.8% | Mar 10, 2009 | S-Cms 1.1 Stable allows remote attackers to bypass authentication and obtain administrative access via an OK value for t... |
| CVE-2009-0863 | — | — | 1.1% | Mar 10, 2009 | SQL injection vulnerability in admin/delete_page.php in S-Cms 1.1 Stable allows remote attackers to execute arbitrary SQ... |
| CVE-2009-0862 | — | — | 1.0% | Mar 10, 2009 | Cross-site scripting (XSS) vulnerability in the hook_cntrlr_error_output function in modules/page/hooks/listeners.php in... |
| CVE-2009-0861 | — | — | 1.1% | Mar 10, 2009 | Cross-site scripting (XSS) vulnerability in phpDenora before 1.2.3 allows remote attackers to inject arbitrary web scrip... |
| CVE-2009-0860 | — | — | 1.0% | Mar 10, 2009 | Cross-site scripting (XSS) vulnerability in the web user interface in the login application in NetMRI 3.0.1 and earlier ... |
| CVE-2009-0859 | — | — | 0.4% | Mar 9, 2009 | The shm_get_stat function in ipc/shm.c in the shm subsystem in the Linux kernel before 2.6.28.5, when CONFIG_SHMEM is di... |
| CVE-2009-0858 | — | — | 6.3% | Mar 9, 2009 | The response_addname function in response.c in Daniel J. Bernstein djbdns 1.05 and earlier does not constrain offsets in... |
| CVE-2009-0857 | — | — | 1.9% | Mar 9, 2009 | Cross-site scripting (XSS) vulnerability in /prm/reports in the Performance Reporting Module (PRM) for Sun Management Ce... |
| CVE-2009-0856 | — | — | 1.3% | Mar 9, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in sample applications in IBM WebSphere Application Server (WAS) 6.0... |
| CVE-2009-0855 | — | — | 6.0% | Mar 9, 2009 | Cross-site scripting (XSS) vulnerability in the administrative console in IBM WebSphere Application Server (WAS) 6.1 bef... |
| CVE-2009-0825 | — | — | 1.3% | Mar 9, 2009 | SQL injection vulnerability in system/rss.php in TinX/cms 3.x before 3.5.1 allows remote attackers to execute arbitrary ... |
| CVE-2009-0781 | — | — | 9.1% | Mar 9, 2009 | Cross-site scripting (XSS) vulnerability in jsp/cal/cal2.jsp in the calendar application in the examples web application... |
| CVE-2009-0537 | — | — | 3.6% | Mar 9, 2009 | Integer overflow in the fts_build function in fts.c in libc in (1) OpenBSD 4.4 and earlier and (2) Microsoft Interix 6.0... |
| CVE-2009-0027 | — | — | 1.8% | Mar 9, 2009 | The request handler in JBossWS in JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP06 a... |
| CVE-2009-0853 | — | — | 2.4% | Mar 9, 2009 | login.php in CelerBB 0.0.2, when magic_quotes_gpc is disabled, allows remote attackers to bypass authentication and obta... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now