2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-0105 | — | — | 1.5% | Jan 9, 2009 | Cross-site scripting (XSS) vulnerability in index.php in EZpack 4.2b2 allows remote attackers to inject arbitrary web sc... |
| CVE-2009-0104 | — | — | 1.0% | Jan 9, 2009 | SQL injection vulnerability in index.php in EZpack 4.2b2 allows remote attackers to execute arbitrary SQL commands via t... |
| CVE-2009-0103 | — | — | 10.1% | Jan 9, 2009 | Multiple PHP remote file inclusion vulnerabilities in playSMS 0.9.3 allow remote attackers to execute arbitrary PHP code... |
| CVE-2009-0072 | — | — | 9.4% | Jan 8, 2009 | Microsoft Internet Explorer 6.0 through 8.0 beta2 allows remote attackers to cause a denial of service (application cras... |
| CVE-2009-0071 | — | — | 6.6% | Jan 8, 2009 | Mozilla Firefox 3.0.5 and earlier 3.0.x versions, when designMode is enabled, allows remote attackers to cause a denial ... |
| CVE-2009-0070 | — | — | 2.9% | Jan 8, 2009 | Integer signedness error in Apple Safari allows remote attackers to read the contents of arbitrary memory locations, cau... |
| CVE-2009-0043 | — | — | 46.5% | Jan 8, 2009 | The smmsnmpd service in CA Service Metric Analysis r11.0 through r11.1 SP1 and Service Level Management 3.5 does not pro... |
| CVE-2009-0069 | — | — | 0.4% | Jan 7, 2009 | Unspecified vulnerability in the nfs4rename_persistent_fh function in the NFS 4 (aka NFSv4) client in the kernel in Sun ... |
| CVE-2009-0068 | — | — | 2.2% | Jan 7, 2009 | Interaction error in xdg-open allows remote attackers to execute arbitrary code by sending a file with a dangerous MIME ... |
| CVE-2009-0066 | — | — | 2.2% | Jan 7, 2009 | Multiple unspecified vulnerabilities in Intel system software for Trusted Execution Technology (TXT) allow attackers to ... |
| CVE-2009-0065 | — | — | 16.7% | Jan 7, 2009 | Buffer overflow in net/sctp/sm_statefuns.c in the Stream Control Transmission Protocol (sctp) implementation in the Linu... |
| CVE-2009-0051 | — | — | 1.2% | Jan 7, 2009 | ZXID 0.29 and earlier does not properly check the return value from the OpenSSL DSA_verify function, which allows remote... |
| CVE-2009-0050 | — | — | 1.3% | Jan 7, 2009 | Lasso 2.2.1 and earlier does not properly check the return value from the OpenSSL DSA_verify function, which allows remo... |
| CVE-2009-0049 | — | — | 1.2% | Jan 7, 2009 | Belgian eID middleware (eidlib) 2.6.0 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFi... |
| CVE-2009-0048 | — | — | 1.2% | Jan 7, 2009 | OpenEvidence 1.0.6 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which... |
| CVE-2009-0047 | — | — | 1.2% | Jan 7, 2009 | Gale 0.99 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows r... |
| CVE-2009-0046 | — | — | 1.2% | Jan 7, 2009 | Sun GridEngine 5.3 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which... |
| CVE-2009-0025 | — | — | 6.9% | Jan 7, 2009 | BIND 9.6.0, 9.5.1, 9.5.0, 9.4.3, and earlier does not properly check the return value from the OpenSSL DSA_verify functi... |
| CVE-2009-0021 | — | — | 3.2% | Jan 7, 2009 | NTP 4.2.4 before 4.2.4p5 and 4.2.5 before 4.2.5p150 does not properly check the return value from the OpenSSL EVP_Verify... |
| CVE-2009-0022 | — | — | 3.5% | Jan 5, 2009 | Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesy... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now