2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0464 | — | — | 5.3% | Feb 10, 2009 | PHP remote file inclusion vulnerability in includes/header.php in Groone GBook 2.0 allows remote attackers to execute ar... |
| CVE-2009-0463 | — | — | 2.3% | Feb 10, 2009 | PHP remote file inclusion vulnerability in includes/header.php in Groone GLinks 2.1 allows remote attackers to execute a... |
| CVE-2009-0462 | — | — | 1.0% | Feb 10, 2009 | Multiple SQL injection vulnerabilities in customer_login_check.asp in ClickTech ClickCart 6.0 allow remote attackers to ... |
| CVE-2009-0461 | — | — | 2.8% | Feb 10, 2009 | Whole Hog Password Protect: Enhanced 1.x allows remote attackers to bypass authentication and obtain administrative acce... |
| CVE-2009-0460 | — | — | 2.8% | Feb 10, 2009 | Whole Hog Ware Support 1.x allows remote attackers to bypass authentication and obtain administrative access via an inte... |
| CVE-2009-0459 | — | — | 2.1% | Feb 10, 2009 | Multiple SQL injection vulnerabilities in admin/login_submit.php in Whole Hog Password Protect: Enhanced 1.x allow remot... |
| CVE-2009-0458 | — | — | 2.3% | Feb 10, 2009 | Multiple SQL injection vulnerabilities in admin/login_submit.php in Whole Hog Ware Support 1.x allow remote attackers to... |
| CVE-2009-0457 | — | — | 6.1% | Feb 10, 2009 | Multiple directory traversal vulnerabilities in AJA Portal 1.2 allow remote attackers to include and execute arbitrary l... |
| CVE-2009-0456 | — | — | 2.1% | Feb 10, 2009 | PHP remote file inclusion vulnerability in examples/example_clientside_javascript.php in patForms, as used in Sourdough ... |
| CVE-2009-0454 | — | — | 1.2% | Feb 10, 2009 | Multiple SQL injection vulnerabilities in DMXReady Online Notebook Manager 1.1 allow remote attackers to execute arbitra... |
| CVE-2009-0453 | — | — | 2.6% | Feb 10, 2009 | Online Grades 3.2.4 allows remote attackers to obtain configuration information via a direct request to phpinfo.php, whi... |
| CVE-2009-0452 | — | — | 1.9% | Feb 10, 2009 | Multiple SQL injection vulnerabilities in parents/login.php in Online Grades 3.2.4, when magic_quotes_gpc is disabled, a... |
| CVE-2009-0451 | — | — | 0.9% | Feb 10, 2009 | SQL injection vulnerability in Skalfa SkaLinks 1.5 allows remote attackers to execute arbitrary SQL commands via the Adm... |
| CVE-2009-0450 | — | — | 10.1% | Feb 10, 2009 | Stack-based buffer overflow in BlazeVideo HDTV Player 3.5 and earlier allows remote attackers to execute arbitrary code ... |
| CVE-2009-0449 | — | — | 1.0% | Feb 10, 2009 | Buffer overflow in klim5.sys in Kaspersky Anti-Virus for Workstations 6.0 and Anti-Virus 2008 allows local users to gain... |
| CVE-2009-0448 | — | — | 2.3% | Feb 10, 2009 | Directory traversal vulnerability in admin/modules/aa/preview.php in Syntax Desktop 2.7 allows remote attackers to inclu... |
| CVE-2009-0447 | — | — | 1.0% | Feb 10, 2009 | Multiple SQL injection vulnerabilities in default.asp in MyDesign Sayac 2.0 allow remote attackers to execute arbitrary ... |
| CVE-2009-0446 | — | — | 0.9% | Feb 10, 2009 | SQL injection vulnerability in photo.php in WEBalbum 2.4b allows remote attackers to execute arbitrary SQL commands via ... |
| CVE-2009-0445 | — | — | 1.2% | Feb 10, 2009 | SQL injection vulnerability in index.php in Dreampics Gallery Builder allows remote attackers to execute arbitrary SQL c... |
| CVE-2009-0444 | — | — | 2.5% | Feb 10, 2009 | Multiple PHP remote file inclusion vulnerabilities in GRBoard 1.8, when register_globals is enabled and magic_quotes_gpc... |
| CVE-2009-0443 | — | — | 5.6% | Feb 10, 2009 | Stack-based buffer overflow in Elecard AVC HD PLAYER 5.5.90116 allows remote attackers to execute arbitrary code via an ... |
| CVE-2009-0442 | — | — | 4.8% | Feb 10, 2009 | Directory traversal vulnerability in bbcode.php in PHPbbBook 1.3 and 1.3h allows remote attackers to include and execute... |
| CVE-2009-0441 | — | — | 3.9% | Feb 10, 2009 | PHP remote file inclusion vulnerability in skin_shop/standard/2_view_body/body_default.php in TECHNOTE 7.2, when registe... |
| CVE-2009-0417 | — | — | 1.0% | Feb 10, 2009 | Cross-site scripting (XSS) vulnerability in the AgaviWebRouting::gen(null) method in Agavi 0.11 before 0.11.6 and 1.0 be... |
| CVE-2009-0502 | — | — | 1.3% | Feb 10, 2009 | Cross-site scripting (XSS) vulnerability in blocks/html/block_html.php in Snoopy 1.2.3, as used in Moodle 1.6 before 1.6... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now