2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4584 | — | — | 1.6% | Jan 6, 2010 | admin.php in dB Masters Multimedia Links Directory 3.1.3 allows remote attackers to bypass authentication and gain admin... |
| CVE-2009-4583 | — | — | 1.0% | Jan 6, 2010 | SQL injection vulnerability in the DhForum (com_dhforum) component for Joomla! allows remote attackers to execute arbitr... |
| CVE-2009-4582 | — | — | 1.0% | Jan 6, 2010 | SQL injection vulnerability in detail.php in the Dictionary module for XOOPS 2.0.18 allows remote attackers to execute a... |
| CVE-2009-4580 | — | — | 1.1% | Jan 6, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in Hasta Blog 2.3 allow remote attackers to inject arbitrary web scr... |
| CVE-2009-4579 | — | — | 1.1% | Jan 6, 2010 | Cross-site scripting (XSS) vulnerability in the Artist avenue (com_artistavenue) component for Joomla! and Mambo allows ... |
| CVE-2009-4578 | — | — | 1.5% | Jan 6, 2010 | Cross-site scripting (XSS) vulnerability in the Facileforms (com_facileforms) component for Joomla! and Mambo allows rem... |
| CVE-2009-4577 | — | — | 1.2% | Jan 6, 2010 | SQL injection vulnerability in the MDForum module 2.x through 2.07 for MAXdev MDPro allows remote attackers to execute a... |
| CVE-2009-4576 | — | — | 1.2% | Jan 6, 2010 | SQL injection vulnerability in the BeeHeard (com_beeheard) component 1.x for Joomla! allows remote attackers to execute ... |
| CVE-2009-4575 | — | — | 1.5% | Jan 6, 2010 | Cross-site scripting (XSS) vulnerability in the Q-Personel (com_qpersonel) component 1.0.2 RC2 for Joomla! allows remote... |
| CVE-2009-4574 | — | — | 1.0% | Jan 6, 2010 | SQL injection vulnerability in country_escorts.php in I-Escorts Directory Script allows remote attackers to execute arbi... |
| CVE-2009-4573 | — | — | 1.2% | Jan 6, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in the Joomulus (mod_joomulus) module 2.0 for Joomla! allow remote a... |
| CVE-2009-4572 | — | — | 0.6% | Jan 5, 2010 | Cross-site request forgery (CSRF) vulnerability in PhpShop 0.8.1 allows remote attackers to hijack the authentication of... |
| CVE-2009-4571 | — | — | 2.0% | Jan 5, 2010 | Multiple SQL injection vulnerabilities in index.php in PhpShop 0.8.1 allow remote attackers to execute arbitrary SQL com... |
| CVE-2009-4570 | — | — | 1.1% | Jan 5, 2010 | Cross-site scripting (XSS) vulnerability in PhpShop 0.8.1 allows remote attackers to inject arbitrary web script or HTML... |
| CVE-2009-4569 | — | — | 1.0% | Jan 5, 2010 | SQL injection vulnerability in elkagroup Image Gallery allows remote attackers to execute arbitrary SQL commands via the... |
| CVE-2009-4568 | — | — | 1.6% | Jan 5, 2010 | Cross-site scripting (XSS) vulnerability in Webmin before 1.500 and Usermin before 1.430 allows remote attackers to inje... |
| CVE-2009-4567 | — | — | 1.3% | Jan 5, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in editprofile.php in Viscacha 0.8 Gold allow remote authenticated u... |
| CVE-2009-3734 | — | — | 1.8% | Jan 5, 2010 | Unspecified vulnerability in the management console in the S2 Security Linear eMerge Access Control System 2.5.x allows ... |
| CVE-2009-4566 | — | — | 1.0% | Jan 4, 2010 | SQL injection vulnerability in index.php in Zenphoto 1.2.5 allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2009-4565 | — | — | 2.4% | Jan 4, 2010 | sendmail before 8.14.4 does not properly handle a '\0' character in a Common Name (CN) field of an X.509 certificate, wh... |
| CVE-2009-4564 | — | — | 0.8% | Jan 4, 2010 | SQL injection vulnerability in index.php in Zenphoto 1.2.5, when the ZenPage plugin is enabled, allows remote attackers ... |
| CVE-2009-4563 | — | — | 3.6% | Jan 4, 2010 | Cross-site request forgery (CSRF) vulnerability in zp-core/admin-options.php in Zenphoto 1.2.5 allows remote attackers t... |
| CVE-2009-4562 | — | — | 3.1% | Jan 4, 2010 | Cross-site scripting (XSS) vulnerability in zp-core/admin.php in Zenphoto 1.2.5 allows remote attackers to inject arbitr... |
| CVE-2009-4561 | — | — | 0.9% | Jan 4, 2010 | Multiple SQL injection vulnerabilities in Admin/index.php in WebLeague 2.2.0, when magic_quotes_gpc is disabled, allow r... |
| CVE-2009-4560 | — | — | 0.9% | Jan 4, 2010 | SQL injection vulnerability in profile.php in WebLeague 2.2.0 allows remote attackers to execute arbitrary SQL commands ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now