2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4625 | — | — | 2.4% | Jan 18, 2010 | SQL injection vulnerability in the updateOnePage function in components/com_bfsurvey_pro/controller.php in BF Survey Pro... |
| CVE-2009-4624 | — | — | 1.0% | Jan 18, 2010 | SQL injection vulnerability in download.php in Nicecoder iDesk allows remote attackers to execute arbitrary SQL commands... |
| CVE-2009-4623 | — | — | 9.8% | Jan 18, 2010 | Multiple PHP remote file inclusion vulnerabilities in Advanced Comment System 1.0 allow remote attackers to execute arbi... |
| CVE-2009-4622 | — | — | 2.1% | Jan 18, 2010 | PHP remote file inclusion vulnerability in admin/admin_news_bot.php in Drunken:Golem Gaming Portal 0.5.1 alpha 2 allows ... |
| CVE-2009-4621 | — | — | 1.0% | Jan 18, 2010 | SQL injection vulnerability in the JiangHu Inn plugin 1.1 and earlier for Discuz! allows remote attackers to execute arb... |
| CVE-2009-4620 | — | — | 1.2% | Jan 18, 2010 | SQL injection vulnerability in the Joomloc (com_joomloc) component 1.0 for Joomla allows remote attackers to execute arb... |
| CVE-2009-4619 | — | — | 1.1% | Jan 18, 2010 | SQL injection vulnerability in the Lucy Games (com_lucygames) component 1.5.4 for Joomla! allows remote attackers to exe... |
| CVE-2009-4618 | — | — | 0.9% | Jan 18, 2010 | Multiple SQL injection vulnerabilities in Tourism Script Bus Script allow remote attackers to execute arbitrary SQL comm... |
| CVE-2009-4617 | — | — | 1.0% | Jan 18, 2010 | Multiple SQL injection vulnerabilities in Tourism Script Accommodation Hotel Booking Portal Script allow remote attacker... |
| CVE-2009-4616 | — | — | 1.2% | Jan 18, 2010 | Cross-site scripting (XSS) vulnerability in search.php in MYRE Holiday Rental Manager allows remote attackers to inject ... |
| CVE-2009-4615 | — | — | 0.9% | Jan 18, 2010 | SQL injection vulnerability in review.php in MYRE Holiday Rental Manager allows remote attackers to execute arbitrary SQ... |
| CVE-2009-4614 | — | — | 2.1% | Jan 18, 2010 | Multiple PHP remote file inclusion vulnerabilities in Moa Gallery 1.2.0 and earlier allow remote attackers to execute ar... |
| CVE-2009-4613 | — | — | 0.9% | Jan 14, 2010 | SQL injection vulnerability in realestate20/loginaction.php in NetArt Media Real Estate Portal 2.0 allows remote attacke... |
| CVE-2009-4355 | — | — | 8.9% | Jan 14, 2010 | Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib.c in OpenSSL 0.9.8l and earlier and 1.0.0 Beta th... |
| CVE-2009-4182 | — | — | 1.5% | Jan 14, 2010 | Multiple unspecified vulnerabilities in HP Web Jetadmin 10.2, when a remote SQL server is used, allow remote attackers t... |
| CVE-2009-4612 | — | — | 3.3% | Jan 13, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in the WebApp JSP Snoop page in Mort Bay Jetty 6.1.x through 6.1.21 ... |
| CVE-2009-4611 | — | — | 3.2% | Jan 13, 2010 | Mort Bay Jetty 6.x through 6.1.22 and 7.0.0 writes backtrace data without sanitizing non-printable characters, which mig... |
| CVE-2009-4610 | — | — | 3.1% | Jan 13, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in Mort Bay Jetty 6.x and 7.0.0 allow remote attackers to inject arb... |
| CVE-2009-4609 | — | — | 1.8% | Jan 13, 2010 | The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal ... |
| CVE-2009-4496 | — | — | 12.1% | Jan 13, 2010 | Boa 0.94.14rc21 writes data to a log file without sanitizing non-printable characters, which might allow remote attacker... |
| CVE-2009-4495 | — | — | 9.0% | Jan 13, 2010 | Yaws 1.85 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to m... |
| CVE-2009-4494 | — | — | 8.8% | Jan 13, 2010 | AOLserver 4.5.1 writes data to a log file without sanitizing non-printable characters, which might allow remote attacker... |
| CVE-2009-4493 | — | — | 6.8% | Jan 13, 2010 | Orion Application Server 2.0.7 writes data to a log file without sanitizing non-printable characters, which might allow ... |
| CVE-2009-4492 | — | — | 16.1% | Jan 13, 2010 | WEBrick 1.3.1 in Ruby 1.8.6 through patchlevel 383, 1.8.7 through patchlevel 248, 1.8.8dev, 1.9.1 through patchlevel 376... |
| CVE-2009-4490 | — | — | 10.3% | Jan 13, 2010 | mini_httpd 1.19 writes data to a log file without sanitizing non-printable characters, which might allow remote attacker... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now