2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0515 | — | — | 2.0% | Feb 11, 2009 | Directory traversal vulnerability in check_lang.php in Yet Another NOCC (YANOCC) 0.1.0 and earlier allows remote attacke... |
| CVE-2009-0514 | — | — | 2.3% | Feb 11, 2009 | Multiple directory traversal vulnerabilities in WebFrame 0.76 allow remote attackers to include and execute arbitrary lo... |
| CVE-2009-0513 | — | — | 2.1% | Feb 11, 2009 | Multiple PHP remote file inclusion vulnerabilities in WebFrame 0.76 allow remote attackers to execute arbitrary PHP code... |
| CVE-2009-0475 | — | — | 2.2% | Feb 11, 2009 | Integer underflow in the Huffman decoding functionality (pvmp3_huffman_parsing.cpp) in OpenCORE 2.0 and earlier allows r... |
| CVE-2009-0455 | — | — | 1.6% | Feb 11, 2009 | Cross-site scripting (XSS) vulnerability in the anonymous comments feature in lib-comment.php in glFusion 1.1.0, 1.1.1, ... |
| CVE-2009-0438 | — | — | 1.2% | Feb 10, 2009 | IBM WebSphere Application Server (WAS) 7 before 7.0.0.1 on Windows allows remote attackers to bypass "Authorization chec... |
| CVE-2009-0437 | — | — | 0.3% | Feb 10, 2009 | The Installation Factory installation process for IBM WebSphere Application Server (WAS) 6.0.2 on Windows, when WAS is r... |
| CVE-2009-0436 | — | — | 0.4% | Feb 10, 2009 | The (1) mod_ibm_ssl and (2) mod_cgid modules in IBM HTTP Server 6.0.x before 6.0.2.31 and 6.1.x before 6.1.0.19, as used... |
| CVE-2009-0435 | — | — | 1.7% | Feb 10, 2009 | Unspecified vulnerability in the IBM Asynchronous I/O (aka AIO or libibmaio) library in the Java Message Service (JMS) c... |
| CVE-2009-0434 | — | — | 0.3% | Feb 10, 2009 | PerfServlet in the PMI/Performance Tools component in IBM WebSphere Application Server (WAS) 6.0.x before 6.0.2.31, 6.1.... |
| CVE-2009-0433 | — | — | 1.6% | Feb 10, 2009 | Unspecified vulnerability in IBM WebSphere Application Server (WAS) 5.1.x before 5.1.1.19, 6.0.x before 6.0.2.29, and 6.... |
| CVE-2009-0432 | — | — | 1.9% | Feb 10, 2009 | The installation process for the File Transfer servlet in the System Management/Repository component in IBM WebSphere Ap... |
| CVE-2009-0305 | — | — | 12.8% | Feb 10, 2009 | Multiple stack-based buffer overflows in the Research in Motion RIM AxLoader ActiveX control in AxLoader.ocx and AxLoade... |
| CVE-2009-0099 | — | — | 26.2% | Feb 10, 2009 | The Electronic Messaging System Microsoft Data Base (EMSMDB32) provider in Microsoft Exchange 2000 Server SP3 and Exchan... |
| CVE-2009-0098 | — | — | 25.0% | Feb 10, 2009 | Microsoft Exchange 2000 Server SP3, Exchange Server 2003 SP2, and Exchange Server 2007 SP1 do not properly interpret Tra... |
| CVE-2009-0097 | — | — | 22.6% | Feb 10, 2009 | Microsoft Office Visio 2002 SP2 and 2003 SP3 does not properly validate memory allocation for Visio files, which allows ... |
| CVE-2009-0096 | — | — | 22.6% | Feb 10, 2009 | Microsoft Office Visio 2002 SP2, 2003 SP3, and 2007 SP1 does not properly perform memory copy operations for object data... |
| CVE-2009-0095 | — | — | 23.5% | Feb 10, 2009 | Microsoft Office Visio 2002 SP2, 2003 SP3, and 2007 SP1 does not properly validate object data in Visio files, which all... |
| CVE-2009-0076 | — | — | 33.5% | Feb 10, 2009 | Microsoft Internet Explorer 7, when XHTML strict mode is used, allows remote attackers to execute arbitrary code via the... |
| CVE-2009-0075 | — | — | 85.3% | Feb 10, 2009 | Microsoft Internet Explorer 7 does not properly handle errors during attempted access to deleted objects, which allows r... |
| CVE-2009-0469 | — | — | 1.4% | Feb 10, 2009 | Unspecified vulnerability in futomi's CGI Cafe Fulltext search CGI 1.1.2 allows remote attackers to gain administrative ... |
| CVE-2009-0468 | — | — | 1.0% | Feb 10, 2009 | Multiple cross-site request forgery (CSRF) vulnerabilities in ajax.html in Profense Web Application Firewall 2.6.2 and 2... |
| CVE-2009-0467 | — | — | 1.5% | Feb 10, 2009 | Cross-site scripting (XSS) vulnerability in proxy.html in Profense Web Application Firewall 2.6.2 and 2.6.3 allows remot... |
| CVE-2009-0466 | — | — | 1.0% | Feb 10, 2009 | Cross-site scripting (XSS) vulnerability in Vivvo CMS before 4.1.1 allows remote attackers to inject arbitrary web scrip... |
| CVE-2009-0465 | — | — | 3.6% | Feb 10, 2009 | The SaveDoc method in the All_In_The_Box.AllBox ActiveX control in ALL_IN_THE_BOX.OCX in Synactis ALL In-The-Box ActiveX... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now