2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4567 | — | — | 1.3% | Jan 5, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in editprofile.php in Viscacha 0.8 Gold allow remote authenticated u... |
| CVE-2009-3734 | — | — | 1.8% | Jan 5, 2010 | Unspecified vulnerability in the management console in the S2 Security Linear eMerge Access Control System 2.5.x allows ... |
| CVE-2009-4566 | — | — | 1.0% | Jan 4, 2010 | SQL injection vulnerability in index.php in Zenphoto 1.2.5 allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2009-4565 | — | — | 2.4% | Jan 4, 2010 | sendmail before 8.14.4 does not properly handle a '\0' character in a Common Name (CN) field of an X.509 certificate, wh... |
| CVE-2009-4564 | — | — | 0.8% | Jan 4, 2010 | SQL injection vulnerability in index.php in Zenphoto 1.2.5, when the ZenPage plugin is enabled, allows remote attackers ... |
| CVE-2009-4563 | — | — | 3.6% | Jan 4, 2010 | Cross-site request forgery (CSRF) vulnerability in zp-core/admin-options.php in Zenphoto 1.2.5 allows remote attackers t... |
| CVE-2009-4562 | — | — | 3.1% | Jan 4, 2010 | Cross-site scripting (XSS) vulnerability in zp-core/admin.php in Zenphoto 1.2.5 allows remote attackers to inject arbitr... |
| CVE-2009-4561 | — | — | 0.9% | Jan 4, 2010 | Multiple SQL injection vulnerabilities in Admin/index.php in WebLeague 2.2.0, when magic_quotes_gpc is disabled, allow r... |
| CVE-2009-4560 | — | — | 0.9% | Jan 4, 2010 | SQL injection vulnerability in profile.php in WebLeague 2.2.0 allows remote attackers to execute arbitrary SQL commands ... |
| CVE-2009-4559 | — | — | 0.8% | Jan 4, 2010 | Cross-site scripting (XSS) vulnerability in the Submitted By module 6.x before 6.x-1.3 for Drupal allows remote authenti... |
| CVE-2009-4558 | — | — | 1.3% | Jan 4, 2010 | The Image Assist module 5.x-1.x before 5.x-1.8, 5.x-2.x before 2.0-alpha4, 6.x-1.x before 6.x-1.1, 6.x-2.x before 2.0-al... |
| CVE-2009-4557 | — | — | 0.9% | Jan 4, 2010 | Cross-site scripting (XSS) vulnerability in the Image Assist module 5.x-1.x before 5.x-1.8, 5.x-2.x before 2.0-alpha4, 6... |
| CVE-2009-4556 | — | — | 0.7% | Jan 4, 2010 | Quick Heal AntiVirus Plus 2009 10.00 SP1 and Quick Heal Total Security 2009 10.00 SP1 use weak permissions (Everyone: Fu... |
| CVE-2009-4555 | — | — | 0.6% | Jan 4, 2010 | Multiple cross-site request forgery (CSRF) vulnerabilities in AgoraCart 5.2.005 and 5.2.006 and AgoraCart GOLD 5.5.005 a... |
| CVE-2009-4554 | — | — | 1.8% | Jan 4, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in Snitz Forums 2000 3.4.07 allow remote attackers to inject arbitra... |
| CVE-2009-4553 | — | — | 2.3% | Jan 4, 2010 | Stack-based buffer overflow in iRehearse allows remote attackers to cause a denial of service (application crash) or pos... |
| CVE-2009-4552 | — | — | 1.2% | Jan 4, 2010 | Cross-site scripting (XSS) vulnerability in the Survey Pro module for Miniweb 2.0 allows remote attackers to inject arbi... |
| CVE-2009-4551 | — | — | 0.9% | Jan 4, 2010 | SQL injection vulnerability in the Survey Pro module for Miniweb 2.0 allows remote attackers to execute arbitrary SQL co... |
| CVE-2009-4550 | — | — | 1.0% | Jan 4, 2010 | SQL injection vulnerability in the Kunena Forum (com_kunena) component 1.5.3 and 1.5.4 for Joomla! allows remote attacke... |
| CVE-2009-4549 | — | — | 4.4% | Jan 4, 2010 | Stack-based buffer overflow in A2 Media Player Pro 2.51 allows remote attackers to execute arbitrary code via a long str... |
| CVE-2009-4548 | — | — | 2.3% | Jan 4, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in ViArt Helpdesk 3.x allow remote attackers to inject arbitrary web... |
| CVE-2009-4547 | — | — | 1.8% | Jan 4, 2010 | Multiple cross-site scripting (XSS) vulnerabilities in ViArt CMS 3.x allow remote attackers to inject arbitrary web scri... |
| CVE-2009-4546 | — | — | 2.6% | Jan 4, 2010 | globepersonnel_login.asp in Logoshows BBS 2.0 allows remote attackers to bypass authentication and gain administrative a... |
| CVE-2009-4545 | — | — | 2.2% | Jan 4, 2010 | Logoshows BBS 2.0 stores sensitive information under the web root with insufficient access control, which allows remote ... |
| CVE-2009-4544 | — | — | 1.6% | Jan 4, 2010 | Cross-site scripting (XSS) vulnerability in kbase/kbase.php in Cromosoft Technologies Facil Helpdesk 2.3 Lite allows rem... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now