2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4863 | — | — | 5.8% | May 11, 2010 | Stack-based buffer overflow in UltraPlayer Media Player 2.112 allows remote attackers to execute arbitrary code via a lo... |
| CVE-2009-4862 | — | — | 0.9% | May 11, 2010 | Multiple SQL injection vulnerabilities in Alwasel 1.5 allow remote attackers to execute arbitrary SQL commands via the i... |
| CVE-2009-4861 | — | — | 0.9% | May 11, 2010 | Cross-site scripting (XSS) vulnerability in shownews.php in SupportPRO SupportDesk 3.0 allows remote attackers to inject... |
| CVE-2009-4860 | — | — | 0.9% | May 11, 2010 | SQL injection vulnerability in demo.php in Typing Pal 1.0 and earlier allows remote attackers to execute arbitrary SQL c... |
| CVE-2009-4859 | — | — | 0.9% | May 11, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in Online Work Order Suite (OWOS) Lite Edition 3.10 allow remote att... |
| CVE-2009-4858 | — | — | 1.3% | May 11, 2010 | Cross-site scripting (XSS) vulnerability in questiondetail.php in Yahoo Answers Clone allows remote attackers to inject ... |
| CVE-2009-4857 | — | — | 1.5% | May 11, 2010 | Cross-site scripting (XSS) vulnerability in login.php in PHP Photo Vote 1.3F allows remote attackers to inject arbitrary... |
| CVE-2009-4856 | — | — | 1.5% | May 11, 2010 | Cross-site scripting (XSS) vulnerability in subitems.php in PHP Easy Shopping Cart 3.1R allows remote attackers to injec... |
| CVE-2009-4855 | — | — | 1.0% | May 11, 2010 | SQL injection vulnerability in index.php in TYPO3 4.0 allows remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2009-4854 | — | — | 3.1% | May 7, 2010 | addons/import.php in TalkBack 2.3.14 allows remote attackers to execute arbitrary commands via the result parameter. |
| CVE-2009-4853 | — | — | 1.0% | May 7, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in JumpBox before 1.1.2 for Foswiki Wiki System allow remote attacke... |
| CVE-2009-4852 | — | — | 0.8% | May 7, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in SemanticScuttle before 0.94.1 allow remote attackers to inject ar... |
| CVE-2009-4851 | — | — | 1.2% | May 7, 2010 | The activation resend function in the Profiles module in XOOPS before 2.4.1 sends activation codes in response to arbitr... |
| CVE-2009-4850 | — | — | 24.7% | May 7, 2010 | The Awingsoft Awakening Winds3D Viewer plugin 3.5.0.9 allows remote attackers to execute arbitrary programs via a SceneU... |
| CVE-2009-4849 | — | — | 0.9% | May 7, 2010 | Multiple cross-site request forgery (CSRF) vulnerabilities in ToutVirtual VirtualIQ Pro 3.2 build 7882 and 3.5 build 869... |
| CVE-2009-4848 | — | — | 1.1% | May 7, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in ToutVirtual VirtualIQ Pro 3.2 build 7882 and 3.5 build 8691 allow... |
| CVE-2009-4847 | — | — | 1.1% | May 7, 2010 | Deliantra Server before 2.82 allows remote authenticated users to cause a denial of service (daemon crash) via vectors i... |
| CVE-2009-4846 | — | — | 3.9% | May 7, 2010 | Multiple buffer overflows in Deliantra Server before 2.82 allow remote attackers to execute arbitrary code via vectors r... |
| CVE-2009-4845 | — | — | 1.2% | May 7, 2010 | The configuration page in ToutVirtual VirtualIQ Pro 3.2 build 7882 contains cleartext SSH credentials, which allows remo... |
| CVE-2009-4844 | — | — | 1.2% | May 7, 2010 | ToutVirtual VirtualIQ Pro 3.2 build 7882 does not restrict access to the /status URI on port 9080, which allows remote a... |
| CVE-2009-4843 | — | — | 2.1% | May 7, 2010 | ToutVirtual VirtualIQ Pro before 3.5 build 8691 does not require administrative authentication for JBoss console access,... |
| CVE-2009-4842 | — | — | 0.9% | May 7, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in ToutVirtual VirtualIQ Pro 3.5 build 8691 allow remote attackers t... |
| CVE-2009-4841 | — | — | 7.3% | May 6, 2010 | Heap-based buffer overflow in the SonicMediaPlayer ActiveX control in SonicMediaPlayer.dll in Roxio CinePlayer 3.2 allow... |
| CVE-2009-4840 | — | — | 8.0% | May 6, 2010 | Heap-based buffer overflow in the IAManager ActiveX control in IAManager.dll in Roxio CinePlayer 3.2 allows remote attac... |
| CVE-2009-4839 | — | — | 1.1% | May 6, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in Basic Analysis and Security Engine (BASE), possibly 1.4.4 and ear... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now