2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

CVE IDSeverityCVSSDescription
CVE-2009-0852——showme.php in CelerBB 0.0.2 allows remote attackers to obtain "reserved information" via the user parameter.
CVE-2009-0851——Multiple SQL injection vulnerabilities in CelerBB 0.0.2, when magic_quotes_gpc is disabled, allow remote attackers to ex...
CVE-2009-0850——Cross-site scripting (XSS) vulnerability in BitDefender Internet Security 2009 allows user-assisted remote attackers to ...
CVE-2009-0849——Stack-based buffer overflow in the DtbClsLogin function in NovaStor NovaNET 12 allows remote attackers to (1) execute ar...
CVE-2009-0838——The crypto pseudo device driver in Sun Solaris 10, and OpenSolaris snv_88 through snv_102, does not properly free memory...
CVE-2009-0835——The __secure_computing function in kernel/seccomp.c in the seccomp subsystem in the Linux kernel 2.6.28.7 and earlier on...
CVE-2009-0834——The audit_syscall_entry function in the Linux kernel 2.6.28.7 and earlier on the x86_64 platform does not properly handl...
CVE-2009-0770——dkim-milter 2.6.0 through 2.8.0 allows remote attackers to cause a denial of service (crash) by signing a message with a...
CVE-2009-0769——QIP 2005 build 8082 allows remote attackers to cause a denial of service (CPU consumption and application hang) via a cr...
CVE-2009-0768——SQL injection vulnerability in forumhop.php in YapBB 1.2 and earlier allows remote attackers to execute arbitrary SQL co...
CVE-2009-0767——Kipper 2.01 stores sensitive information under the web root with insufficient access control, which allows remote attack...
CVE-2009-0766——Directory traversal vulnerability in default.php in Kipper 2.01 allows remote attackers to include and execute arbitrary...
CVE-2009-0765——Directory traversal vulnerability in index.php in Kipper 2.01 allows remote attackers to include and execute arbitrary l...
CVE-2009-0764——Multiple cross-site scripting (XSS) vulnerabilities in Kipper 2.01 allow remote attackers to inject arbitrary web script...
CVE-2009-0763——Cross-site scripting (XSS) vulnerability in default.php in Kipper 2.01 allows remote attackers to inject arbitrary web s...
CVE-2009-0762——Cross-site scripting (XSS) vulnerability in ScriptsEz Ez PHP Comment allows remote attackers to inject arbitrary web scr...
CVE-2009-0761——Cross-site scripting (XSS) vulnerability in online.asp in Team Board 1.x allows remote attackers to inject arbitrary web...
CVE-2009-0760——Team Board 1.x and 2.x stores sensitive information under the web root with insufficient access control, which allows re...
CVE-2009-0833——Heap-based buffer overflow in gen_msn.dll in the gen_msn plugin 0.31 for Winamp 5.541 allows remote attackers to execute...
CVE-2009-0832——SQL injection vulnerability in items.php in the E-Cart module 1.3 for PHP-Fusion allows remote attackers to execute arbi...
CVE-2009-0831——SQL injection vulnerability in members.php in the Members CV (job) module 1.0 for PHP-Fusion, when magic_quotes_gpc is d...
CVE-2009-0830——Cross-site scripting (XSS) vulnerability in QuoteBook allows remote attackers to inject arbitrary web script or HTML via...
CVE-2009-0829——Multiple SQL injection vulnerabilities in QuoteBook allow remote attackers to execute arbitrary SQL commands via the (1)...
CVE-2009-0828——QuoteBook stores quotes.inc under the web root with insufficient access control, which allows remote attackers to obtain...
CVE-2009-0827——PollHelper stores poll.inc under the web root with insufficient access control, which allows remote attackers to downloa...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now