2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

CVE IDSeverityCVSSDescription
CVE-2009-0261Stack-based buffer overflow in EffectMatrix Total Video Player 1.31 allows user-assisted attackers to execute arbitrary ...
CVE-2009-0260Multiple cross-site scripting (XSS) vulnerabilities in action/AttachFile.py in MoinMoin before 1.8.1 allow remote attack...
CVE-2009-0259The Word processor in OpenOffice.org 1.1.2 through 1.1.5 allows remote attackers to cause a denial of service (crash) an...
CVE-2009-0258The Indexed Search Engine (indexed_search) system extension in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0...
CVE-2009-0257Multiple cross-site scripting (XSS) vulnerabilities in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through...
CVE-2009-0256Session fixation vulnerability in the authentication library in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2....
CVE-2009-0255HIGH7.5The System extension Install tool in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 creates the...
CVE-2009-0254Stack-based buffer overflow in easyHDR PRO 1.60.2 allows user-assisted attackers to execute arbitrary code via an invali...
CVE-2009-0253Mozilla Firefox 3.0.5 allows remote attackers to trick a user into visiting an arbitrary URL via an onclick action that ...
CVE-2009-0057The Certificate Authority Proxy Function (CAPF) service in Cisco Unified Communications Manager 5.x before 5.1(3e) and 6...
CVE-2009-0008Unspecified vulnerability in Apple QuickTime MPEG-2 Playback Component before 7.60.92.0 on Windows allows remote attacke...
CVE-2009-0252Multiple SQL injection vulnerabilities in default.asp in Enthrallweb eReservations allow remote attackers to execute arb...
CVE-2009-0251Static code injection vulnerability in admin.php in Ryneezy phoSheezy 0.2 allows remote authenticated administrators to ...
CVE-2009-0250Ryneezy phoSheezy 0.2 stores sensitive information under the web root with insufficient access control, which allows rem...
CVE-2009-0249Katy Whitton RankEm stores sensitive information under the web root with insufficient access control, which allows remot...
CVE-2009-0248Cross-site scripting (XSS) vulnerability in rankup.asp in Katy Whitton RankEm allows remote attackers to inject arbitrar...
CVE-2009-0247The server for 53KF Web IM 2009 Home, Professional, and Enterprise editions relies on client-side protection mechanisms ...
CVE-2009-0246Stack-based buffer overflow in easyHDR PRO 1.60.2 allows user-assisted attackers to execute arbitrary code via an invali...
CVE-2009-0245Cross-site scripting (XSS) vulnerability in Usagi Project MyNETS 1.2.0.1 and earlier allows remote attackers to inject a...
CVE-2009-0244HIGH8.8Directory traversal vulnerability in the OBEX FTP Service in the Microsoft Bluetooth stack in Windows Mobile 6 Professio...
CVE-2009-0243Microsoft Windows does not properly enforce the Autorun and NoDriveTypeAutoRun registry values, which allows physically ...
CVE-2009-0030A certain Red Hat patch for SquirrelMail 1.4.8 sets the same SQMSESSID cookie value for all sessions, which allows remot...
CVE-2009-0026Multiple cross-site scripting (XSS) vulnerabilities in Apache Jackrabbit before 1.5.2 allow remote attackers to inject a...
CVE-2009-0007Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (applicati...
CVE-2009-0006Integer signedness error in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now