2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0507 | — | — | 1.0% | Feb 26, 2009 | IBM WebSphere Process Server (WPS) 6.1.2 before 6.1.2.3 and 6.2 before 6.2.0.1 does not properly restrict configuration ... |
| CVE-2009-0187 | — | — | 40.0% | Feb 26, 2009 | Stack-based buffer overflow in Orbit Downloader 2.8.2 and 2.8.3, and possibly other versions before 2.8.5, allows remote... |
| CVE-2009-0114 | — | — | 3.8% | Feb 26, 2009 | Unspecified vulnerability in the Settings Manager in Adobe Flash Player 9.x before 9.0.159.0 and 10.x before 10.0.22.87,... |
| CVE-2009-0741 | — | — | 1.0% | Feb 25, 2009 | SQL injection vulnerability in Login.asp in Craft Silicon Banking@Home 2.1 and earlier allows remote attackers to execut... |
| CVE-2009-0740 | — | — | 1.1% | Feb 25, 2009 | SQL injection vulnerability in login.php in BlueBird Prelease allows remote attackers to execute arbitrary SQL commands ... |
| CVE-2009-0739 | — | — | 1.1% | Feb 25, 2009 | SQL injection vulnerability in login.php in MyNews 0.10 allows remote attackers to execute arbitrary SQL commands via th... |
| CVE-2009-0738 | — | — | 1.1% | Feb 25, 2009 | SQL injection vulnerability in login.php in Auth Php 1.0 allows remote attackers to execute arbitrary SQL commands via t... |
| CVE-2009-0737 | — | — | 1.5% | Feb 25, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the web-based installer (config/index.php) in MediaWiki 1.6 befor... |
| CVE-2009-0736 | — | — | 1.0% | Feb 25, 2009 | Cross-site scripting (XSS) vulnerability in Pebble before 2.3.2 allows remote attackers to inject arbitrary web script o... |
| CVE-2009-0735 | — | — | 2.2% | Feb 25, 2009 | Directory traversal vulnerability in lib/classes/message_class.php in Papoo CMS 3.6, when register_globals is enabled an... |
| CVE-2009-0734 | — | — | 5.1% | Feb 25, 2009 | Heap-based buffer overflow in MultimediaPlayer.exe 6.86.240.7 in Nokia PC Suite 6.86.9.3 allows remote attackers to exec... |
| CVE-2009-0541 | — | — | 1.8% | Feb 25, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Magento 1.2.0 and 1.2.1.1 allow remote attackers to inject arbitr... |
| CVE-2009-0540 | — | — | 1.1% | Feb 25, 2009 | Cross-site scripting (XSS) vulnerability in Libero 5.3 SP5, and possibly other versions before 5.5 SP1, allows remote at... |
| CVE-2009-0506 | — | — | 0.3% | Feb 25, 2009 | Unspecified vulnerability in IBM WebSphere Application Server (WAS) 5.1 and 6.0.2 before 6.0.2.33 on z/OS, when CSIv2 Id... |
| CVE-2009-0505 | — | — | 1.8% | Feb 25, 2009 | The CICS listener in IBM TXSeries for Multiplatforms 6.2 GA waits for a forcepurge acknowledgement from the CICS Applica... |
| CVE-2009-0238 | HIGH | 8.8 | 43.1% | Feb 25, 2009 | Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP3, and 2007 SP1; Excel Viewer 2003 Gold and SP3; Excel Viewer; Compati... |
| CVE-2009-0732 | — | — | 1.2% | Feb 24, 2009 | Downloadcenter 2.1 stores common.h under the web root with insufficient access control, which allows remote attackers to... |
| CVE-2009-0731 | — | — | 5.6% | Feb 24, 2009 | Directory traversal vulnerability in pages/play.php in Free Arcade Script 1.0 allows remote attackers to include and exe... |
| CVE-2009-0730 | — | — | 1.1% | Feb 24, 2009 | Multiple SQL injection vulnerabilities in the GigCalendar (com_gigcal) component 1.0 for Mambo and Joomla!, when magic_q... |
| CVE-2009-0729 | — | — | 1.5% | Feb 24, 2009 | Multiple directory traversal vulnerabilities in Page Engine CMS 2.0 Basic and Pro allow remote attackers to include and ... |
| CVE-2009-0728 | — | — | 0.9% | Feb 24, 2009 | SQL injection vulnerability in the My_eGallery module for MAXdev MDPro (MD-Pro) and Postnuke allows remote attackers to ... |
| CVE-2009-0727 | — | — | 1.0% | Feb 24, 2009 | SQL injection vulnerability in jobdetails.php in taifajobs 1.0 and earlier allows remote attackers to execute arbitrary ... |
| CVE-2009-0726 | — | — | 2.0% | Feb 24, 2009 | SQL injection vulnerability in the GigCalendar (com_gigcal) component 1.0 for Mambo and Joomla! allows remote attackers ... |
| CVE-2009-0722 | — | — | 2.3% | Feb 24, 2009 | Directory traversal vulnerability in admin.php in Potato News 1.0.0 allows remote attackers to include and execute arbit... |
| CVE-2009-0439 | — | — | 0.4% | Feb 24, 2009 | Unspecified vulnerability in the queue manager in IBM WebSphere MQ (WMQ) 5.3, 6.0 before 6.0.2.6, and 7.0 before 7.0.0.2... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now