2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2009-4375——SQL injection vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Manag...
CVE-2009-4374——Directory traversal vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information...
CVE-2009-4373——Unrestricted file upload vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Inform...
CVE-2009-4372——AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and possibly other versions before 2.1.5-4, allows...
CVE-2009-4371——Cross-site scripting (XSS) vulnerability in the Locale module (modules/locale/locale.module) in Drupal Core 6.14, and po...
CVE-2009-4370——Cross-site scripting (XSS) vulnerability in the Menu module (modules/menu/menu.admin.inc) in Drupal Core 6.x before 6.15...
CVE-2009-4369——Cross-site scripting (XSS) vulnerability in the Contact module (modules/contact/contact.admin.inc or modules/contact/con...
CVE-2009-4368——Multiple unspecified vulnerabilities in Centreon before 2.1.4 have unknown impact and attack vectors in the (1) ping too...
CVE-2009-4367——The Staging Webservice ("sitecore modules/staging/service/api.asmx") in Sitecore Staging Module 5.4.0 rev.080625 and ear...
CVE-2009-4366——Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Blog 1.0 allows remote attackers to inject arbitra...
CVE-2009-4365——Multiple cross-site request forgery (CSRF) vulnerabilities in admin.php in ScriptsEz Ez Blog 1.0 allow remote attackers ...
CVE-2009-4364——Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Blog allows remote attackers to inject arbitrary w...
CVE-2009-4363——Text_Filter/lib/Horde/Text/Filter/Xss.php in Horde Application Framework before 3.3.6, Horde Groupware before 1.2.5, and...
CVE-2009-4362——Multiple buffer overflows in qosmod in IBM AIX 6.1 allow local users to cause a denial of service (application crash) or...
CVE-2009-4361——Multiple buffer overflows in qoslist in IBM AIX 6.1 allow local users to cause a denial of service (application crash) o...
CVE-2009-4270——Stack-based buffer overflow in the errprintf function in base/gsmisc.c in ghostscript 8.64 through 8.70 allows remote at...
CVE-2009-4261——Multiple directory traversal vulnerabilities in the iallocator framework in Ganeti 1.2.4 through 1.2.8, 2.0.0 through 2....
CVE-2009-4143——PHP before 5.2.12 does not properly handle session data, which has unspecified impact and attack vectors related to (1) ...
CVE-2009-4142——The htmlspecialchars function in PHP before 5.2.12 does not properly handle (1) overlong UTF-8 sequences, (2) invalid Sh...
CVE-2009-3792——Directory traversal vulnerability in Adobe Flash Media Server (FMS) before 3.5.3 allows attackers to load arbitrary DLL ...
CVE-2009-3701——Multiple cross-site scripting (XSS) vulnerabilities in the administration interface in Horde Application Framework befor...
CVE-2009-4360——SQL injection vulnerability in modules/content/index.php in the Content module 0.5 for XOOPS allows remote attackers to ...
CVE-2009-4359——Cross-site scripting (XSS) vulnerability in folder.php in the SmartMedia 0.85 Beta module for XOOPS allows remote attack...
CVE-2009-4358——freebsd-update in FreeBSD 8.0, 7.2, 7.1, 6.4, and 6.3 uses insecure permissions in its working directory (/var/db/freebs...
CVE-2009-4029——The (1) dist or (2) distcheck rules in GNU Automake 1.11.1, 1.10.3, and release branches branch-1-4 through branch-1-9, ...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now