2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4495 | — | — | 9.0% | Jan 13, 2010 | Yaws 1.85 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to m... |
| CVE-2009-4494 | — | — | 8.8% | Jan 13, 2010 | AOLserver 4.5.1 writes data to a log file without sanitizing non-printable characters, which might allow remote attacker... |
| CVE-2009-4493 | — | — | 6.8% | Jan 13, 2010 | Orion Application Server 2.0.7 writes data to a log file without sanitizing non-printable characters, which might allow ... |
| CVE-2009-4492 | — | — | 16.1% | Jan 13, 2010 | WEBrick 1.3.1 in Ruby 1.8.6 through patchlevel 383, 1.8.7 through patchlevel 248, 1.8.8dev, 1.9.1 through patchlevel 376... |
| CVE-2009-4491 | CRITICAL | 9.8 | 13.5% | Jan 13, 2010 | thttpd 2.25b0 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers ... |
| CVE-2009-4490 | — | — | 10.3% | Jan 13, 2010 | mini_httpd 1.19 writes data to a log file without sanitizing non-printable characters, which might allow remote attacker... |
| CVE-2009-4489 | — | — | 9.6% | Jan 13, 2010 | header.c in Cherokee before 0.99.32 writes data to a log file without sanitizing non-printable characters, which might a... |
| CVE-2009-4488 | CRITICAL | 9.8 | 12.8% | Jan 13, 2010 | Varnish 2.0.6 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers ... |
| CVE-2009-4487 | — | — | 27.0% | Jan 13, 2010 | nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers t... |
| CVE-2009-4212 | — | — | 7.4% | Jan 13, 2010 | Multiple integer underflows in the (1) AES and (2) RC4 decryption functionality in the crypto library in MIT Kerberos 5 ... |
| CVE-2009-3959 | — | — | 11.5% | Jan 13, 2010 | Integer overflow in the U3D implementation in Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and... |
| CVE-2009-3958 | — | — | 52.6% | Jan 13, 2010 | Multiple stack-based buffer overflows in the NOS Microsystems getPlus Helper ActiveX control before 1.6.2.49 in gp.ocx i... |
| CVE-2009-3957 | — | — | 4.8% | Jan 13, 2010 | Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, might allow attackers to cause a de... |
| CVE-2009-3956 | — | — | 7.7% | Jan 13, 2010 | The default configuration of Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, does n... |
| CVE-2009-3955 | — | — | 15.8% | Jan 13, 2010 | Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, allows remote attackers to execute ... |
| CVE-2009-3954 | — | — | 9.0% | Jan 13, 2010 | The 3D implementation in Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, might allo... |
| CVE-2009-3953 | HIGH | 8.8 | 83.6% | Jan 13, 2010 | The U3D implementation in Adobe Reader and Acrobat 9.x before 9.3, 8.x before 8.2 on Windows and Mac OS X, and 7.x befor... |
| CVE-2009-4608 | — | — | 1.8% | Jan 13, 2010 | Cross-site scripting (XSS) vulnerability in Canon IT Solutions Inc. ACCESSGUARDIAN 3.0.14 and earlier, and 3.5.6 and ear... |
| CVE-2009-4607 | — | — | 0.6% | Jan 13, 2010 | The command line interface in Overland Storage Snap Server 410 with GuardianOS 5.1.041 runs the "less" utility with a hi... |
| CVE-2009-4606 | — | — | 0.8% | Jan 13, 2010 | South River Technologies WebDrive 9.02 build 2232 installs the WebDrive Service without a security descriptor, which all... |
| CVE-2009-3637 | — | — | 7.6% | Jan 13, 2010 | Stack-based buffer overflow in the M_AddToServerList function in client/menu.c in Red Planet Arena Alien Arena 7.30 allo... |
| CVE-2009-3416 | — | — | 1.0% | Jan 13, 2010 | Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.... |
| CVE-2009-3415 | — | — | 2.6% | Jan 13, 2010 | Unspecified vulnerability in the Oracle OLAP component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 all... |
| CVE-2009-3414 | — | — | 1.4% | Jan 13, 2010 | Unspecified vulnerability in the Oracle Spatial component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 ... |
| CVE-2009-3413 | — | — | 1.4% | Jan 13, 2010 | Unspecified vulnerability in the Oracle Spatial component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now