2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

CVE IDSeverityCVSSDescription
CVE-2009-0852showme.php in CelerBB 0.0.2 allows remote attackers to obtain "reserved information" via the user parameter.
CVE-2009-0851Multiple SQL injection vulnerabilities in CelerBB 0.0.2, when magic_quotes_gpc is disabled, allow remote attackers to ex...
CVE-2009-0850Cross-site scripting (XSS) vulnerability in BitDefender Internet Security 2009 allows user-assisted remote attackers to ...
CVE-2009-0849Stack-based buffer overflow in the DtbClsLogin function in NovaStor NovaNET 12 allows remote attackers to (1) execute ar...
CVE-2009-0838The crypto pseudo device driver in Sun Solaris 10, and OpenSolaris snv_88 through snv_102, does not properly free memory...
CVE-2009-0835The __secure_computing function in kernel/seccomp.c in the seccomp subsystem in the Linux kernel 2.6.28.7 and earlier on...
CVE-2009-0834The audit_syscall_entry function in the Linux kernel 2.6.28.7 and earlier on the x86_64 platform does not properly handl...
CVE-2009-0770dkim-milter 2.6.0 through 2.8.0 allows remote attackers to cause a denial of service (crash) by signing a message with a...
CVE-2009-0769QIP 2005 build 8082 allows remote attackers to cause a denial of service (CPU consumption and application hang) via a cr...
CVE-2009-0768SQL injection vulnerability in forumhop.php in YapBB 1.2 and earlier allows remote attackers to execute arbitrary SQL co...
CVE-2009-0767Kipper 2.01 stores sensitive information under the web root with insufficient access control, which allows remote attack...
CVE-2009-0766Directory traversal vulnerability in default.php in Kipper 2.01 allows remote attackers to include and execute arbitrary...
CVE-2009-0765Directory traversal vulnerability in index.php in Kipper 2.01 allows remote attackers to include and execute arbitrary l...
CVE-2009-0764Multiple cross-site scripting (XSS) vulnerabilities in Kipper 2.01 allow remote attackers to inject arbitrary web script...
CVE-2009-0763Cross-site scripting (XSS) vulnerability in default.php in Kipper 2.01 allows remote attackers to inject arbitrary web s...
CVE-2009-0762Cross-site scripting (XSS) vulnerability in ScriptsEz Ez PHP Comment allows remote attackers to inject arbitrary web scr...
CVE-2009-0761Cross-site scripting (XSS) vulnerability in online.asp in Team Board 1.x allows remote attackers to inject arbitrary web...
CVE-2009-0760Team Board 1.x and 2.x stores sensitive information under the web root with insufficient access control, which allows re...
CVE-2009-0833Heap-based buffer overflow in gen_msn.dll in the gen_msn plugin 0.31 for Winamp 5.541 allows remote attackers to execute...
CVE-2009-0832SQL injection vulnerability in items.php in the E-Cart module 1.3 for PHP-Fusion allows remote attackers to execute arbi...
CVE-2009-0831SQL injection vulnerability in members.php in the Members CV (job) module 1.0 for PHP-Fusion, when magic_quotes_gpc is d...
CVE-2009-0830Cross-site scripting (XSS) vulnerability in QuoteBook allows remote attackers to inject arbitrary web script or HTML via...
CVE-2009-0829Multiple SQL injection vulnerabilities in QuoteBook allow remote attackers to execute arbitrary SQL commands via the (1)...
CVE-2009-0828QuoteBook stores quotes.inc under the web root with insufficient access control, which allows remote attackers to obtain...
CVE-2009-0827PollHelper stores poll.inc under the web root with insufficient access control, which allows remote attackers to downloa...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now