2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4726 | — | — | 2.9% | Mar 18, 2010 | Directory traversal vulnerability in download.php in Quickdev 4 PHP allows remote attackers to read arbitrary files via ... |
| CVE-2009-4725 | — | — | 2.0% | Mar 18, 2010 | Directory traversal vulnerability in modules/aljazeera/admin/setup.php in Arab Portal 2.2 and earlier, when register_glo... |
| CVE-2009-4724 | — | — | 0.9% | Mar 18, 2010 | SQL injection vulnerability in shop.htm in PaymentProcessorScript.net PPScript allows remote attackers to execute arbitr... |
| CVE-2009-4723 | — | — | 2.4% | Mar 18, 2010 | Directory traversal vulnerability in confirm.php in Netpet CMS 1.9 allows remote attackers to include and execute arbitr... |
| CVE-2009-4722 | — | — | 2.0% | Mar 18, 2010 | SQL injection vulnerability in the CheckLogin function in includes/functions.php in Limny 1.01, when magic_quotes_gpc is... |
| CVE-2009-4721 | — | — | 1.0% | Mar 18, 2010 | Multiple SQL injection vulnerabilities in Admin/index.asp in Andrews-Web (A-W) BannerAd 1.0 allow remote attackers to ex... |
| CVE-2009-4720 | — | — | 1.1% | Mar 18, 2010 | SQL injection vulnerability in cgi-bin/gnudip.cgi in GnuDIP 2.1.1 allows remote attackers to execute arbitrary SQL comma... |
| CVE-2009-4719 | — | — | 1.1% | Mar 18, 2010 | SQL injection vulnerability in index.php in Discloser 0.0.4 rc2 allows remote attackers to execute arbitrary SQL command... |
| CVE-2009-1299 | — | — | 0.3% | Mar 18, 2010 | The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownershi... |
| CVE-2009-4718 | — | — | 1.0% | Mar 15, 2010 | SQL injection vulnerability in visitorduration.php in Gonafish WebStatCaffe allows remote attackers to execute arbitrary... |
| CVE-2009-4717 | — | — | 1.3% | Mar 15, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in Gonafish WebStatCaffe allow remote attackers to inject arbitrary ... |
| CVE-2009-4716 | — | — | 1.1% | Mar 15, 2010 | Cross-site scripting (XSS) vulnerability in results.php in EDGEPHP EZWebSearch allows remote attackers to inject arbitra... |
| CVE-2009-4715 | — | — | 1.1% | Mar 15, 2010 | Cross-site scripting (XSS) vulnerability in rates.php in Real Time Currency Exchange allows remote attackers to inject a... |
| CVE-2009-4714 | — | — | 1.5% | Mar 15, 2010 | Cross-site scripting (XSS) vulnerability in the quiz module for XOOPS Celepar allows remote attackers to inject arbitrar... |
| CVE-2009-4713 | — | — | 1.5% | Mar 15, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in the Qas (aka Quas) module for XOOPS Celepar allow remote attacker... |
| CVE-2009-4712 | — | — | 1.2% | Mar 15, 2010 | SQL injection vulnerability in index.php in Tukanas Classifieds (aka EasyClassifieds) Script 1.0 allows remote attackers... |
| CVE-2009-4711 | — | — | 1.1% | Mar 15, 2010 | SQL injection vulnerability in the CoolURI (cooluri) extension before 1.0.16 for TYPO3 allows remote attackers to execut... |
| CVE-2009-4710 | — | — | 1.1% | Mar 15, 2010 | SQL injection vulnerability in the Reset backend password (cwt_resetbepassword) extension 1.20 and earlier for TYPO3 all... |
| CVE-2009-4709 | — | — | 1.0% | Mar 15, 2010 | SQL injection vulnerability in the datamints Newsticker (datamints_newsticker) extension before 0.7.2 for TYPO3 allows r... |
| CVE-2009-4708 | — | — | 1.0% | Mar 15, 2010 | SQL injection vulnerability in the [Gobernalia] Front End News Submitter (gb_fenewssubmit) extension 0.1.0 and earlier f... |
| CVE-2009-4707 | — | — | 0.9% | Mar 15, 2010 | Cross-site scripting (XSS) vulnerability in the [Gobernalia] Front End News Submitter (gb_fenewssubmit) extension 0.1.0 ... |
| CVE-2009-4706 | — | — | 0.9% | Mar 15, 2010 | Cross-site scripting (XSS) vulnerability in the Mailform (mailform) extension before 0.9.24 for TYPO3 allows remote atta... |
| CVE-2009-4705 | — | — | 0.9% | Mar 15, 2010 | Cross-site scripting (XSS) vulnerability in the Twitter Search (twittersearch) extension before 0.1.1 for TYPO3 allows r... |
| CVE-2009-4704 | — | — | 1.1% | Mar 15, 2010 | Unspecified vulnerability in the Webesse E-Card (ws_ecard) extension 1.0.2 and earlier for TYPO3 allows remote attackers... |
| CVE-2009-4703 | — | — | 1.0% | Mar 15, 2010 | SQL injection vulnerability in the Webesse Image Gallery (ws_gallery) extension 1.0.4 and earlier for TYPO3 allows remot... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now