2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2009-4786Multiple cross-site scripting (XSS) vulnerabilities in Pligg before 1.0.3 allow remote attackers to inject arbitrary web...
CVE-2009-4785SQL injection vulnerability in the Quick News (com_quicknews) component for Joomla! allows remote attackers to execute a...
CVE-2009-4784SQL injection vulnerability in the Joaktree (com_joaktree) component 1.0 for Joomla! allows remote attackers to execute ...
CVE-2009-4783Multiple SQL injection vulnerabilities in Theeta CMS, possibly 0.01, allow remote attackers to execute arbitrary SQL com...
CVE-2009-4782Multiple cross-site scripting (XSS) vulnerabilities in Theeta CMS, possibly 0.01, allow remote attackers to inject arbit...
CVE-2009-4781TUKEVA Password Reminder before 1.0.0.4 uses a hard-coded password for rem.accdb, which allows local users to discover c...
CVE-2009-4780Multiple cross-site scripting (XSS) vulnerabilities in index.php in phpMyFAQ before 2.5.5 allow remote attackers to inje...
CVE-2009-4779Multiple PHP remote file inclusion vulnerabilities in NukeHall 0.3 and earlier allow remote attackers to execute arbitra...
CVE-2009-4778Multiple unspecified vulnerabilities in the PDF distiller in the Attachment Service component in Research In Motion (RIM...
CVE-2009-4777Unspecified vulnerability in multiple versions of Hitachi JP1/Automatic Job Management System 2 - View, JP1/Integrated M...
CVE-2009-4776Buffer overflow in Hitachi Cosminexus V4 through V8, Processing Kit for XML, and Developer's Kit for Java, as used in pr...
CVE-2009-4775Format string vulnerability in Ipswitch WS_FTP Professional 12 before 12.2 allows remote attackers to cause a denial of ...
CVE-2009-4774Unspecified vulnerability in Sun Solaris 10 and OpenSolaris snv_49 through snv_117, when 64bit mode is used on the Intel...
CVE-2009-4773Cross-site request forgery (CSRF) vulnerability in the order-management functionality in the Ubercart module 5.x before ...
CVE-2009-4772Unspecified vulnerability in the PayPal Website Payments Standard functionality in the Ubercart module 5.x before 5.x-1....
CVE-2009-4771The PayPal Website Payments Standard functionality in the Ubercart module 5.x before 5.x-1.9 and 6.x before 6.x-2.1 for ...
CVE-2009-4770The FTP server component in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 has a default password of pass123 for the moderato...
CVE-2009-4769Multiple format string vulnerabilities in the tolog function in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 allow (1) remo...
CVE-2009-4768Unspecified vulnerability in the JASS script interpreter in Warcraft III: The Frozen Throne 1.24b and earlier allows use...
CVE-2009-4767Multiple cross-site scripting (XSS) vulnerabilities in index.php in Plohni Shoutbox 1.0 allow remote attackers to inject...
CVE-2009-4766YP Portal MS-Pro Surumu (aka MS-Pro Portal Scripti) 1.0 and 1.2 stores sensitive information under the web root with ins...
CVE-2009-4765CNR Hikaye Portal 2.0 stores sensitive information under the web root with insufficient access control, which allows rem...
CVE-2009-4511Multiple directory traversal vulnerabilities in the web administration interface on the TANDBERG Video Communication Ser...
CVE-2009-4510The SSH service on the TANDBERG Video Communication Server (VCS) before X5.1 uses a fixed DSA key, which makes it easier...
CVE-2009-4509The administrative web console on the TANDBERG Video Communication Server (VCS) before X4.3 uses predictable session coo...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now