2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4600 | — | — | 1.0% | Jan 12, 2010 | SQL injection vulnerability in realestate20/loginaction.php in NetArt Media Real Estate Portal 2.0 allows remote attacke... |
| CVE-2009-4599 | — | — | 2.0% | Jan 12, 2010 | Multiple SQL injection vulnerabilities in the JS Jobs (com_jsjobs) component 1.0.5.6 for Joomla! allow remote attackers ... |
| CVE-2009-4598 | — | — | 1.2% | Jan 12, 2010 | SQL injection vulnerability in the JPhoto (com_jphoto) component 1.0 for Joomla! allows remote attackers to execute arbi... |
| CVE-2009-4597 | — | — | 1.0% | Jan 12, 2010 | Multiple SQL injection vulnerabilities in index.php in PHP Inventory 1.2 allow (1) remote authenticated users to execute... |
| CVE-2009-4596 | — | — | 1.5% | Jan 12, 2010 | Cross-site scripting (XSS) vulnerability in index.php in PHP Inventory 1.2 allows remote attackers to inject arbitrary w... |
| CVE-2009-4595 | — | — | 0.7% | Jan 12, 2010 | SQL injection vulnerability in index.php in PHP Inventory 1.2 allows remote authenticated users to execute arbitrary SQL... |
| CVE-2009-4538 | — | — | 8.4% | Jan 12, 2010 | drivers/net/e1000e/netdev.c in the e1000e driver in the Linux kernel 2.6.32.3 and earlier does not properly check the si... |
| CVE-2009-4537 | — | — | 5.9% | Jan 12, 2010 | drivers/net/r8169.c in the r8169 driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an ... |
| CVE-2009-4536 | — | — | 5.2% | Jan 12, 2010 | drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel 2.6.32.3 and earlier handles Ethernet frames that... |
| CVE-2009-4594 | — | — | 1.5% | Jan 9, 2010 | Unspecified vulnerability in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.131 for Domino 8.0.x has unknown... |
| CVE-2009-4486 | — | — | 4.3% | Jan 8, 2010 | Stack-based buffer overflow in the eDirectory plugin in Novell iManager before 2.7.3 allows remote attackers to execute ... |
| CVE-2009-4010 | — | — | 10.3% | Jan 8, 2010 | Unspecified vulnerability in PowerDNS Recursor before 3.1.7.2 allows remote attackers to spoof DNS data via crafted zone... |
| CVE-2009-4009 | — | — | 17.6% | Jan 8, 2010 | Buffer overflow in PowerDNS Recursor before 3.1.7.2 allows remote attackers to cause a denial of service (daemon crash) ... |
| CVE-2009-3952 | — | — | 8.0% | Jan 8, 2010 | Buffer overflow in Adobe Illustrator CS3 13.0.3 and earlier and Illustrator CS4 14.0.0 allows attackers to execute arbit... |
| CVE-2009-3742 | — | — | 1.1% | Jan 7, 2010 | Cross-site scripting (XSS) vulnerability in Liferay Portal before 5.3.0 allows remote attackers to inject arbitrary web ... |
| CVE-2009-4497 | — | — | 3.2% | Jan 7, 2010 | Cross-site scripting (XSS) vulnerability in LXR Cross Referencer 0.9.5 and 0.9.6 allows remote attackers to inject arbit... |
| CVE-2009-4593 | — | — | 1.4% | Jan 7, 2010 | The bftpdutmp_log function in bftpdutmp.c in Bftpd before 2.4 does not place a '\0' character at the end of the string v... |
| CVE-2009-4592 | — | — | 1.4% | Jan 7, 2010 | Unspecified vulnerability in base_local_rules.php in Basic Analysis and Security Engine (BASE) before 1.4.4 allows remot... |
| CVE-2009-4591 | — | — | 1.1% | Jan 7, 2010 | SQL injection vulnerability in Basic Analysis and Security Engine (BASE) before 1.4.4 allows remote attackers to execute... |
| CVE-2009-4590 | — | — | 1.1% | Jan 7, 2010 | Cross-site scripting (XSS) vulnerability in base_local_rules.php in Basic Analysis and Security Engine (BASE) before 1.4... |
| CVE-2009-4589 | — | — | 1.4% | Jan 7, 2010 | Cross-site scripting (XSS) vulnerability in the Special:Block implementation in the getContribsLink function in SpecialB... |
| CVE-2009-4588 | — | — | 32.0% | Jan 7, 2010 | Heap-based buffer overflow in the WindsPlayerIE.View.1 ActiveX control in WindsPly.ocx 3.5.0.0 Beta, 3.0.0.5, and earlie... |
| CVE-2009-4587 | — | — | 4.1% | Jan 7, 2010 | Cherokee Web Server 0.5.4 allows remote attackers to cause a denial of service (daemon crash) via an MS-DOS reserved wor... |
| CVE-2009-4586 | — | — | 1.1% | Jan 7, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in index.html in Wowd client before 1.3.1 allow remote attackers to ... |
| CVE-2009-4585 | — | — | 2.6% | Jan 6, 2010 | UranyumSoft Listing Service stores sensitive information under the web root with insufficient access control, which allo... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now