2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4515 | — | — | 1.3% | Dec 31, 2009 | The Storm module 6.x before 6.x-1.25 for Drupal does not enforce privilege requirements for storminvoiceitem nodes, whic... |
| CVE-2009-4514 | — | — | 0.9% | Dec 31, 2009 | Cross-site scripting (XSS) vulnerability in the OpenSocial Shindig-Integrator module 5.x and 6.x before 6.x-2.1, a modul... |
| CVE-2009-4513 | — | — | 1.0% | Dec 31, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the Workflow module 5.x before 5.x-2.4 and 6.x before 6.x-1.2, a ... |
| CVE-2009-4512 | — | — | 2.1% | Dec 31, 2009 | Directory traversal vulnerability in index.php in Oscailt 3.3, when Use Friendly URL's is disabled, allows remote attack... |
| CVE-2009-4502 | — | — | 21.6% | Dec 31, 2009 | The NET_TCP_LISTEN function in net.c in Zabbix Agent before 1.6.7, when running on FreeBSD or Solaris, allows remote att... |
| CVE-2009-4501 | — | — | 8.5% | Dec 31, 2009 | The zbx_get_next_field function in libs/zbxcommon/str.c in Zabbix Server before 1.6.8 allows remote attackers to cause a... |
| CVE-2009-4500 | — | — | 2.3% | Dec 31, 2009 | The process_trap function in trapper/trapper.c in Zabbix Server before 1.6.6 allows remote attackers to cause a denial o... |
| CVE-2009-4499 | — | — | 2.4% | Dec 31, 2009 | SQL injection vulnerability in the get_history_lastid function in the nodewatcher component in Zabbix Server before 1.6.... |
| CVE-2009-4498 | — | — | 31.9% | Dec 31, 2009 | The node_process_command function in Zabbix Server before 1.8 allows remote attackers to execute arbitrary commands via ... |
| CVE-2009-4484 | — | — | 69.6% | Dec 30, 2009 | Multiple stack-based buffer overflows in the CertDecoder::GetName function in src/asn.cpp in TaoCrypt in yaSSL before 1.... |
| CVE-2009-4483 | — | — | 1.4% | Dec 30, 2009 | Unspecified vulnerability in LDAP3A.exe in MailSite 8.0.4 allows remote attackers to cause a denial of service (daemon c... |
| CVE-2009-4482 | — | — | 4.6% | Dec 30, 2009 | Buffer overflow in MediaServer.exe in TVersity 1.6 allows remote attackers to execute arbitrary code via unspecified vec... |
| CVE-2009-4481 | — | — | — | Dec 30, 2009 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-3111. Reason: This candidate is a duplicate of... |
| CVE-2009-4480 | — | — | 3.3% | Dec 30, 2009 | Buffer overflow in the web service in AzeoTech DAQFactory 5.77 might allow remote attackers to execute arbitrary code vi... |
| CVE-2009-4479 | — | — | 1.6% | Dec 30, 2009 | LDAP3A.exe in MailSite 8.0.4 allows remote attackers to cause a denial of service (heap memory corruption and daemon cra... |
| CVE-2009-4478 | — | — | 1.5% | Dec 30, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Xstate Real Estate 1.0 allow remote attackers to inject arbitrary... |
| CVE-2009-4477 | — | — | 1.0% | Dec 30, 2009 | SQL injection vulnerability in page.html in Xstate Real Estate 1.0 allows remote attackers to execute arbitrary SQL comm... |
| CVE-2009-4476 | — | — | 4.6% | Dec 30, 2009 | Stack-based buffer overflow in HAURI ViRobot Desktop 5.5 before 2009-09-28.00 allows remote attackers to execute arbitra... |
| CVE-2009-4475 | — | — | 1.0% | Dec 30, 2009 | SQL injection vulnerability in the Joomlub (com_joomlub) component for Joomla! allows remote attackers to execute arbitr... |
| CVE-2009-4474 | — | — | 0.9% | Dec 30, 2009 | SQL injection vulnerability in the Mike de Boer zoom (com_zoom) component 2.0 for Mambo allows remote attackers to execu... |
| CVE-2009-4473 | — | — | 1.2% | Dec 30, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in WorkArea/ContentDesigner/ekformsiframe.aspx in Ektron CMS400.NET ... |
| CVE-2009-4472 | — | — | 2.4% | Dec 30, 2009 | Multiple PHP remote file inclusion vulnerabilities in PHPope 1.0.0 and earlier allow remote attackers to execute arbitra... |
| CVE-2009-4471 | — | — | 2.5% | Dec 30, 2009 | Multiple PHP remote file inclusion vulnerabilities in FreeSchool 1.1.0 and earlier allow remote attackers to execute arb... |
| CVE-2009-4470 | — | — | 0.9% | Dec 30, 2009 | SQL injection vulnerability in boardrule.php in DVBBS 2.0 allows remote attackers to execute arbitrary SQL commands via ... |
| CVE-2009-4469 | — | — | 1.4% | Dec 30, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in pagenumber.inc.php in phpPowerCards 2.0 allow remote attackers to... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now