2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0575 | — | — | 1.1% | Feb 13, 2009 | Cross-site scripting (XSS) vulnerability in the theme_views_bulk_operations_confirmation function in views_bulk_operatio... |
| CVE-2009-0574 | — | — | 1.0% | Feb 13, 2009 | SQL injection vulnerability in index.php in Easy CafeEngine allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2009-0573 | — | — | 1.5% | Feb 13, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in FotoWeb 6.0 (Build 273) allow remote attackers to inject arbitrar... |
| CVE-2009-0572 | — | — | 6.3% | Feb 13, 2009 | PHP remote file inclusion vulnerability in include/flatnux.php in FlatnuX CMS (aka Flatnuke3) 2009-01-27 and 2009-02-04,... |
| CVE-2009-0571 | — | — | 2.3% | Feb 13, 2009 | admin.php in Ninja Designs Mailist 3.0 stores backup copies of maillist.php under the web root with insufficient access ... |
| CVE-2009-0570 | — | — | 2.0% | Feb 13, 2009 | Directory traversal vulnerability in send.php in Ninja Designs Mailist 3.0, when register_globals is enabled and magic_q... |
| CVE-2009-0503 | — | — | 0.3% | Feb 13, 2009 | IBM WebSphere Message Broker 6.1.x before 6.1.0.2 writes a database connection password to the Event Log and System Log ... |
| CVE-2009-0361 | — | — | 0.4% | Feb 13, 2009 | Russ Allbery pam-krb5 before 3.13, as used by libpam-heimdal, su in Solaris 10, and other software, does not properly ha... |
| CVE-2009-0360 | — | — | 0.7% | Feb 13, 2009 | Russ Allbery pam-krb5 before 3.13, when linked against MIT Kerberos, does not properly initialize the Kerberos libraries... |
| CVE-2009-0216 | — | — | 3.0% | Feb 13, 2009 | GE Fanuc iFIX 5.0 and earlier relies on client-side authentication involving a weakly encrypted local password file, whi... |
| CVE-2009-0569 | — | — | 4.6% | Feb 13, 2009 | Buffer overflow in Becky! Internet Mail 2.48.02 and earlier allows remote attackers to execute arbitrary code via a mail... |
| CVE-2009-0362 | — | — | 1.3% | Feb 13, 2009 | filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a deni... |
| CVE-2009-0141 | MEDIUM | 5.5 | 0.3% | Feb 13, 2009 | XTerm in Apple Mac OS X 10.4.11 and 10.5.6, when used with luit, creates tty devices with insecure world-writable permis... |
| CVE-2009-0140 | — | — | 1.7% | Feb 13, 2009 | Unspecified vulnerability in the SMB component in Apple Mac OS X 10.4.11 and 10.5.6 allows remote SMB servers to cause a... |
| CVE-2009-0139 | — | — | 2.9% | Feb 13, 2009 | Integer overflow in the SMB component in Apple Mac OS X 10.5.6 allows remote SMB servers to cause a denial of service (s... |
| CVE-2009-0138 | — | — | 4.2% | Feb 13, 2009 | servermgrd (Server Manager) in Apple Mac OS X 10.5.6 does not properly validate authentication credentials, which allows... |
| CVE-2009-0137 | — | — | 3.2% | Feb 13, 2009 | Multiple unspecified vulnerabilities in Safari RSS in Apple Mac OS X 10.4.11 and 10.5.6, and Windows XP and Vista, allow... |
| CVE-2009-0020 | — | — | 2.9% | Feb 13, 2009 | Unspecified vulnerability in CarbonCore in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial o... |
| CVE-2009-0019 | — | — | 2.1% | Feb 13, 2009 | Remote Apple Events in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial of service (applicati... |
| CVE-2009-0018 | — | — | 2.5% | Feb 13, 2009 | The Remote Apple Events server in Apple Mac OS X 10.4.11 and 10.5.6 does not properly initialize a buffer, which allows ... |
| CVE-2009-0017 | — | — | 0.4% | Feb 13, 2009 | csregprinter in the Printing component in Apple Mac OS X 10.4.11 and 10.5.6 does not properly handle error conditions, w... |
| CVE-2009-0015 | — | — | 0.3% | Feb 13, 2009 | Unspecified vulnerability in fseventsd in the FSEvents framework in Apple Mac OS X 10.5.6 allows local users to obtain s... |
| CVE-2009-0014 | — | — | 0.3% | Feb 13, 2009 | Folder Manager in Apple Mac OS X 10.5.6 uses insecure default permissions when recreating a Downloads folder after it ha... |
| CVE-2009-0013 | — | — | 0.3% | Feb 13, 2009 | dscl in DS Tools in Apple Mac OS X 10.4.11 and 10.5.6 requires that passwords must be provided as command line arguments... |
| CVE-2009-0012 | — | — | 5.4% | Feb 13, 2009 | Heap-based buffer overflow in CoreText in Apple Mac OS X 10.5.6 allows remote attackers to execute arbitrary code via a ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now