2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0133 | — | — | 67.0% | Jan 15, 2009 | Buffer overflow in Microsoft HTML Help Workshop 4.74 and earlier allows context-dependent attackers to execute arbitrary... |
| CVE-2009-0132 | — | — | 0.4% | Jan 15, 2009 | Integer overflow in the aio_suspend function in Sun Solaris 8 through 10 and OpenSolaris, when 32-bit mode is enabled, a... |
| CVE-2009-0131 | — | — | 0.3% | Jan 15, 2009 | The UFS implementation in the kernel in Sun OpenSolaris snv_29 through snv_90 allows local users to cause a denial of se... |
| CVE-2009-0129 | — | — | 1.1% | Jan 15, 2009 | libcrypt-openssl-dsa-perl does not properly check the return value from the OpenSSL DSA_verify and DSA_do_verify functio... |
| CVE-2009-0128 | — | — | 1.1% | Jan 15, 2009 | plugins/crypto/openssl/crypto_openssl.c in Simple Linux Utility for Resource Management (aka SLURM or slurm-llnl) does n... |
| CVE-2009-0127 | — | — | 1.4% | Jan 15, 2009 | M2Crypto does not properly check the return value from the OpenSSL EVP_VerifyFinal, DSA_verify, ECDSA_verify, DSA_do_ver... |
| CVE-2009-0126 | — | — | 2.4% | Jan 15, 2009 | The decrypt_public function in lib/crypt.cpp in the client in Berkeley Open Infrastructure for Network Computing (BOINC)... |
| CVE-2009-0125 | — | — | 1.5% | Jan 15, 2009 | NOTE: this issue has been disputed by the upstream vendor. nasl/nasl_crypto2.c in the Nessus Attack Scripting Language l... |
| CVE-2009-0124 | — | — | 1.3% | Jan 15, 2009 | The tqsl_verifyDataBlock function in openssl_cert.cpp in American Radio Relay League (ARRL) tqsllib 2.0 does not properl... |
| CVE-2009-0123 | — | — | 1.5% | Jan 15, 2009 | Unspecified vulnerability in Apple Safari on Mac OS X 10.5 and Windows allows remote attackers to read arbitrary files o... |
| CVE-2009-0122 | — | — | 0.5% | Jan 15, 2009 | hplip.postinst in HP Linux Imaging and Printing (HPLIP) 2.7.7 and 2.8.2 on Ubuntu allows local users to change the owner... |
| CVE-2009-0029 | — | — | 0.4% | Jan 15, 2009 | The ABI in the Linux kernel 2.6.28 and earlier on s390, powerpc, sparc64, and mips 64-bit platforms requires that a 32-b... |
| CVE-2009-0121 | — | — | 0.9% | Jan 15, 2009 | SQL injection vulnerability in frontpage.php in Goople CMS 1.8.2 allows remote attackers to execute arbitrary SQL comman... |
| CVE-2009-0120 | — | — | 3.5% | Jan 15, 2009 | The IBM WebSphere DataPower XML Security Gateway XS40 with firmware 3.6.1.5 allows remote attackers to cause a denial of... |
| CVE-2009-0119 | — | — | 36.7% | Jan 14, 2009 | Buffer overflow in Microsoft Windows XP SP3 allows remote attackers to cause a denial of service (memory corruption and ... |
| CVE-2009-0041 | — | — | 2.7% | Jan 14, 2009 | IAX2 in Asterisk Open Source 1.2.x before 1.2.31, 1.4.x before 1.4.23-rc4, and 1.6.x before 1.6.0.3-rc2; Business Editio... |
| CVE-2009-0024 | — | — | 0.4% | Jan 13, 2009 | The sys_remap_file_pages function in mm/fremap.c in the Linux kernel before 2.6.24.1 allows local users to cause a denia... |
| CVE-2009-0113 | — | — | 6.6% | Jan 9, 2009 | Directory traversal vulnerability in attachmentlibrary.php in the XStandard component for Joomla! 1.5.8 and earlier allo... |
| CVE-2009-0112 | — | — | 0.6% | Jan 9, 2009 | Cross-site request forgery (CSRF) vulnerability in admin/agent_edit.asp in PollPro 3.0 allows remote attackers to create... |
| CVE-2009-0111 | — | — | 1.0% | Jan 9, 2009 | SQL injection vulnerability in frontpage.php in Goople CMS 1.8.2 and earlier allows remote attackers to execute arbitrar... |
| CVE-2009-0110 | — | — | 1.0% | Jan 9, 2009 | SQL injection vulnerability in read.php in RiotPix 0.61 and earlier allows remote attackers to execute arbitrary SQL com... |
| CVE-2009-0109 | — | — | 1.0% | Jan 9, 2009 | SQL injection vulnerability in index.php in RiotPix 0.61 and earlier allows remote attackers to execute arbitrary SQL co... |
| CVE-2009-0108 | — | — | 2.6% | Jan 9, 2009 | PHPAuctions (aka PHPAuctionSystem) allows remote attackers to bypass authentication and gain administrative access via m... |
| CVE-2009-0107 | — | — | 1.5% | Jan 9, 2009 | Cross-site scripting (XSS) vulnerability in profile.php in PHPAuctions (aka PHPAuctionSystem) allows remote attackers to... |
| CVE-2009-0106 | — | — | 1.0% | Jan 9, 2009 | SQL injection vulnerability in profile.php in PHPAuctions (aka PHPAuctionSystem) allows remote attackers to execute arbi... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now