2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4885 | — | — | 1.1% | Jun 11, 2010 | Cross-site scripting (XSS) vulnerability in templates/1/login.php in phpCommunity 2 2.1.8 allows remote attackers to inj... |
| CVE-2009-4884 | — | — | 1.1% | Jun 11, 2010 | Multiple SQL injection vulnerabilities in phpCommunity 2 2.1.8, when magic_quotes_gpc is disabled, allow remote attacker... |
| CVE-2009-4883 | — | — | 1.0% | Jun 11, 2010 | SQL injection vulnerability in index.php in PHPRecipeBook 2.24 and 2.39 allows remote attackers to execute arbitrary SQL... |
| CVE-2009-4882 | — | — | 2.4% | Jun 2, 2010 | Cross-site scripting (XSS) vulnerability in zc/publisher/html.rb in ZoneCheck 2.0.4-13 and 2.1.0 allows remote attackers... |
| CVE-2009-4881 | — | — | 2.0% | Jun 1, 2010 | Integer overflow in the __vstrfmon_l function in stdlib/strfmon_l.c in the strfmon implementation in the GNU C Library (... |
| CVE-2009-4880 | — | — | 11.2% | Jun 1, 2010 | Multiple integer overflows in the strfmon implementation in the GNU C Library (aka glibc or libc6) 2.10.1 and earlier al... |
| CVE-2009-4134 | — | — | 4.4% | May 27, 2010 | Buffer underflow in the rgbimg module in Python 2.5 allows remote attackers to cause a denial of service (application cr... |
| CVE-2009-4879 | — | — | 1.0% | May 26, 2010 | The Identity Server in Novell Access Manager before 3.1 SP1 allows attackers with disabled Active Directory accounts to ... |
| CVE-2009-4878 | — | — | 1.2% | May 26, 2010 | Unspecified vulnerability in the Administration Console in Novell Access Manager before 3.1 SP1 allows attackers to acce... |
| CVE-2009-4877 | — | — | 0.6% | May 26, 2010 | Multiple cross-site request forgery (CSRF) vulnerabilities in WebGUI before 7.7.14 allow remote attackers to hijack the ... |
| CVE-2009-4876 | — | — | 2.0% | May 26, 2010 | admin/cikkform.php in Netrix CMS 1.0 allows remote attackers to modify arbitrary pages via a direct request using the ci... |
| CVE-2009-4875 | — | — | 2.6% | May 26, 2010 | FCKeditor.Java 2.4 allows remote attackers to cause a denial of service (infinite loop) via a malformed request paramete... |
| CVE-2009-4874 | — | — | 2.6% | May 26, 2010 | TalkBack 2.3.14 does not properly restrict access to the edit comment feature (comments.php), which allows remote attack... |
| CVE-2009-4873 | — | — | 20.6% | May 26, 2010 | Stack-based buffer overflow in the HTTP server in Rhino Software Serv-U Web Client 9.0.0.5 allows remote attackers to ca... |
| CVE-2009-3678 | — | — | 12.6% | May 14, 2010 | Integer overflow in cdd.dll in the Canonical Display Driver (CDD) in Microsoft Windows Server 2008 R2 and Windows 7 on 6... |
| CVE-2009-3467 | — | — | 2.5% | May 13, 2010 | Cross-site scripting (XSS) vulnerability in an unspecified method in Adobe ColdFusion 8.0, 8.0.1, and 9.0 allows remote ... |
| CVE-2009-4872 | — | — | 0.9% | May 11, 2010 | Multiple SQL injection vulnerabilities in globepersonnel_login.asp in Logoshows BBS 2.0 allow remote attackers to execut... |
| CVE-2009-4871 | — | — | 1.0% | May 11, 2010 | SQL injection vulnerability in globepersonnel_forum.asp in Logoshows BBS 2.0 allows remote attackers to execute arbitrar... |
| CVE-2009-4870 | — | — | 0.9% | May 11, 2010 | Multiple SQL injection vulnerabilities in login.php in PHPCityPortal allow remote attackers to execute arbitrary SQL com... |
| CVE-2009-4869 | — | — | 1.5% | May 11, 2010 | Cross-site scripting (XSS) vulnerability in index.php in Nasim Guest Book 1.2 allows remote attackers to inject arbitrar... |
| CVE-2009-4868 | — | — | 1.3% | May 11, 2010 | Cross-site scripting (XSS) vulnerability in Hitron Soft Answer Me 1.0 allows remote attackers to inject arbitrary web sc... |
| CVE-2009-4867 | — | — | 4.4% | May 11, 2010 | Buffer overflow in Tuniac 090517c allows remote attackers to cause a denial of service (application crash) or possibly e... |
| CVE-2009-4866 | — | — | 1.1% | May 11, 2010 | Cross-site scripting (XSS) vulnerability in search.cgi in Matt's Script Archive (MSA) Simple Search 1.0 allows remote at... |
| CVE-2009-4865 | — | — | 1.1% | May 11, 2010 | Multiple SQL injection vulnerabilities in escorts_search.php in I-Escorts Directory Script and Agency Script, when magic... |
| CVE-2009-4864 | — | — | 1.2% | May 11, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in escorts_search.php in I-Escorts Directory Script and Agency Scrip... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now