2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2009-0340——Multiple directory traversal vulnerabilities in Simple PHP Newsletter 1.5 allow remote attackers to read arbitrary files...
CVE-2009-0339——SQL injection vulnerability in inc_webblogmanager.asp in DMXReady Blog Manager allows remote attackers to execute arbitr...
CVE-2009-0338——Cross-site scripting (XSS) vulnerability in inc_webblogmanager.asp in DMXReady Blog Manager allows remote attackers to i...
CVE-2009-0337——SQL injection vulnerability in index.asp in Katy Whitton BlogIt! allows remote attackers to execute arbitrary SQL comman...
CVE-2009-0336——Katy Whitton BlogIt! stores sensitive information under the web root with insufficient access control, which allows remo...
CVE-2009-0335——Cross-site scripting (XSS) vulnerability in index.asp in Katy Whitton BlogIt! allows remote attackers to inject arbitrar...
CVE-2009-0334——SQL injection vulnerability in index.asp in Katy Whitton BlogIt! allows remote attackers to execute arbitrary SQL comman...
CVE-2009-0333——SQL injection vulnerability in the WebAmoeba (WA) Ticket System (com_waticketsystem) component for Joomla! allows remote...
CVE-2009-0332——Multiple SQL injection vulnerabilities in AV Book Library before 1.1 allow remote attackers to execute arbitrary SQL com...
CVE-2009-0331——Directory traversal vulnerability in gallery/comment.php in Enhanced Simple PHP Gallery (ESPG) 1.72 allows remote attack...
CVE-2009-0330——Directory traversal vulnerability in index.php in Simple Content Management System (SCMS) 1 allows remote attackers to i...
CVE-2009-0329——SQL injection vulnerability in the PcCookBook (com_pccookbook) component for Joomla! allows remote attackers to execute ...
CVE-2009-0328——ROBS-PROJECTS Digital Sales IPN (aka DS-IPN.NET or DS-IPN Paypal Shop) stores sensitive information under the web root w...
CVE-2009-0327——SQL injection vulnerability in readbible.php in Free Bible Search PHP Script 1.0 allows remote attackers to execute arbi...
CVE-2009-0326——SQL injection vulnerability in login.php in Dark Age CMS 0.2c beta allows remote attackers to execute arbitrary SQL comm...
CVE-2009-0325——Directory traversal vulnerability in entries/index.php in Ninja Blog 4.8, when magic_quotes_gpc is disabled, allows remo...
CVE-2009-0324——Multiple SQL injection vulnerabilities in BibCiter 1.4 allow remote attackers to execute arbitrary SQL commands via the ...
CVE-2009-0323——Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary...
CVE-2009-0322——drivers/firmware/dell_rbu.c in the Linux kernel before 2.6.27.13, and 2.6.28.x before 2.6.28.2, allows local users to ca...
CVE-2009-0321——Apple Safari 3.2.1 (aka AppVer 3.525.27.1) on Windows allows remote attackers to cause a denial of service (infinite loo...
CVE-2009-0320——Microsoft Windows XP, Server 2003 and 2008, and Vista exposes I/O activity measurements of all processes, which allows l...
CVE-2009-0319——Unspecified vulnerability in the autofs module in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_108...
CVE-2009-0318——Untrusted search path vulnerability in the GObject Python interpreter wrapper in Gnumeric allows local users to execute ...
CVE-2009-0317——Untrusted search path vulnerability in the Python language bindings for Nautilus (nautilus-python) allows local users to...
CVE-2009-0316——Untrusted search path vulnerability in src/if_python.c in the Python interface in Vim before 7.2.045 allows local users ...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now