2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0420 | — | — | 1.1% | Feb 5, 2009 | SQL injection vulnerability in the RD-Autos (com_rdautos) 1.5.5 Stable component for Joomla! allows remote attackers to ... |
| CVE-2009-0062 | — | — | 2.6% | Feb 5, 2009 | Unspecified vulnerability in the Cisco Wireless LAN Controller (WLC), Cisco Catalyst 6500 Wireless Services Module (WiSM... |
| CVE-2009-0061 | — | — | 1.6% | Feb 5, 2009 | Unspecified vulnerability in the Wireless LAN Controller (WLC) TSEC driver in the Cisco 4400 WLC, Cisco Catalyst 6500 an... |
| CVE-2009-0059 | — | — | 1.9% | Feb 5, 2009 | The Cisco Wireless LAN Controller (WLC), Cisco Catalyst 6500 Wireless Services Module (WiSM), and Cisco Catalyst 3750 In... |
| CVE-2009-0058 | — | — | 0.8% | Feb 5, 2009 | The Cisco Wireless LAN Controller (WLC), Cisco Catalyst 6500 Wireless Services Module (WiSM), and Cisco Catalyst 3750 In... |
| CVE-2009-0419 | — | — | 15.3% | Feb 4, 2009 | Microsoft XML Core Services, as used in Microsoft Expression Web, Office, Internet Explorer 6 and 7, and other products,... |
| CVE-2009-0418 | — | — | 8.2% | Feb 4, 2009 | The IPv6 Neighbor Discovery Protocol (NDP) implementation in HP HP-UX B.11.11, B.11.23, and B.11.31 does not validate th... |
| CVE-2009-0388 | — | — | 13.3% | Feb 4, 2009 | Multiple integer signedness errors in (1) UltraVNC 1.0.2 and 1.0.5 and (2) TightVnc 1.3.9 allow remote VNC servers to ca... |
| CVE-2009-0358 | — | — | 0.5% | Feb 4, 2009 | Mozilla Firefox 3.x before 3.0.6 does not properly implement the (1) no-store and (2) no-cache Cache-Control directives,... |
| CVE-2009-0357 | — | — | 1.6% | Feb 4, 2009 | Mozilla Firefox before 3.0.6 and SeaMonkey before 1.1.15 do not properly restrict access from web pages to the (1) Set-C... |
| CVE-2009-0356 | — | — | 3.2% | Feb 4, 2009 | Mozilla Firefox before 3.0.6 and SeaMonkey do not block links to the (1) about:plugins and (2) about:config URIs from .d... |
| CVE-2009-0355 | — | — | 1.6% | Feb 4, 2009 | components/sessionstore/src/nsSessionStore.js in Mozilla Firefox before 3.0.6 does not block changes of INPUT elements t... |
| CVE-2009-0354 | — | — | 2.3% | Feb 4, 2009 | Cross-domain vulnerability in js/src/jsobj.cpp in Mozilla Firefox 3.x before 3.0.6 allows remote attackers to bypass the... |
| CVE-2009-0353 | — | — | 4.3% | Feb 4, 2009 | Unspecified vulnerability in Mozilla Firefox 3.x before 3.0.6, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 ... |
| CVE-2009-0352 | — | — | 4.3% | Feb 4, 2009 | Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before 3.0.6, Thunderbird before 2.0.0.21, and SeaMonkey bef... |
| CVE-2009-0416 | — | — | 0.2% | Feb 3, 2009 | The SSL certificate setup program (genSslCert.sh) in Standards Based Linux Instrumentation for Manageability (SBLIM) sbl... |
| CVE-2009-0415 | — | — | 0.5% | Feb 3, 2009 | Untrusted search path vulnerability in trickle 1.07 allows local users to execute arbitrary code via a Trojan horse tric... |
| CVE-2009-0414 | — | — | 3.0% | Feb 3, 2009 | Unspecified vulnerability in Tor before 0.2.0.33 has unspecified impact and remote attack vectors that trigger heap corr... |
| CVE-2009-0413 | — | — | 2.0% | Feb 3, 2009 | Cross-site scripting (XSS) vulnerability in RoundCube Webmail (roundcubemail) 0.2 stable allows remote attackers to inje... |
| CVE-2009-0412 | — | — | 1.5% | Feb 3, 2009 | The ProcessLogin function in class.auth.php in Interspire Shopping Cart (ISC) 4.0.1 Ultimate edition allows remote attac... |
| CVE-2009-0411 | — | — | 1.0% | Feb 3, 2009 | Google Chrome before 1.0.154.46 does not properly restrict access from web pages to the (1) Set-Cookie and (2) Set-Cooki... |
| CVE-2009-0410 | — | — | 9.7% | Feb 3, 2009 | Off-by-one error in the SMTP daemon in GroupWise Internet Agent (GWIA) in Novell GroupWise 6.5x, 7.0, 7.01, 7.02, 7.03, ... |
| CVE-2009-0409 | — | — | 1.1% | Feb 3, 2009 | SQL injection vulnerability in offline_auth.php in Max.Blog 1.0.6 and earlier, when magic_quotes_gpc is disabled, allows... |
| CVE-2009-0408 | — | — | 0.7% | Feb 3, 2009 | Cross-site request forgery (CSRF) vulnerability in osCommerce 2.2 RC 2a allows remote attackers to hijack the authentica... |
| CVE-2009-0407 | — | — | 1.1% | Feb 3, 2009 | SQL injection vulnerability in admin/login.php in PHP-CMS Project 1 allows remote attackers to execute arbitrary SQL com... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now