2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2009-4375SQL injection vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Manag...
CVE-2009-4374Directory traversal vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information...
CVE-2009-4373Unrestricted file upload vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Inform...
CVE-2009-4372AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and possibly other versions before 2.1.5-4, allows...
CVE-2009-4371Cross-site scripting (XSS) vulnerability in the Locale module (modules/locale/locale.module) in Drupal Core 6.14, and po...
CVE-2009-4370Cross-site scripting (XSS) vulnerability in the Menu module (modules/menu/menu.admin.inc) in Drupal Core 6.x before 6.15...
CVE-2009-4369Cross-site scripting (XSS) vulnerability in the Contact module (modules/contact/contact.admin.inc or modules/contact/con...
CVE-2009-4368Multiple unspecified vulnerabilities in Centreon before 2.1.4 have unknown impact and attack vectors in the (1) ping too...
CVE-2009-4367The Staging Webservice ("sitecore modules/staging/service/api.asmx") in Sitecore Staging Module 5.4.0 rev.080625 and ear...
CVE-2009-4366Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Blog 1.0 allows remote attackers to inject arbitra...
CVE-2009-4365Multiple cross-site request forgery (CSRF) vulnerabilities in admin.php in ScriptsEz Ez Blog 1.0 allow remote attackers ...
CVE-2009-4364Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Blog allows remote attackers to inject arbitrary w...
CVE-2009-4363Text_Filter/lib/Horde/Text/Filter/Xss.php in Horde Application Framework before 3.3.6, Horde Groupware before 1.2.5, and...
CVE-2009-4362Multiple buffer overflows in qosmod in IBM AIX 6.1 allow local users to cause a denial of service (application crash) or...
CVE-2009-4361Multiple buffer overflows in qoslist in IBM AIX 6.1 allow local users to cause a denial of service (application crash) o...
CVE-2009-4270Stack-based buffer overflow in the errprintf function in base/gsmisc.c in ghostscript 8.64 through 8.70 allows remote at...
CVE-2009-4261Multiple directory traversal vulnerabilities in the iallocator framework in Ganeti 1.2.4 through 1.2.8, 2.0.0 through 2....
CVE-2009-4143PHP before 5.2.12 does not properly handle session data, which has unspecified impact and attack vectors related to (1) ...
CVE-2009-4142The htmlspecialchars function in PHP before 5.2.12 does not properly handle (1) overlong UTF-8 sequences, (2) invalid Sh...
CVE-2009-3792Directory traversal vulnerability in Adobe Flash Media Server (FMS) before 3.5.3 allows attackers to load arbitrary DLL ...
CVE-2009-3701Multiple cross-site scripting (XSS) vulnerabilities in the administration interface in Horde Application Framework befor...
CVE-2009-4360SQL injection vulnerability in modules/content/index.php in the Content module 0.5 for XOOPS allows remote attackers to ...
CVE-2009-4359Cross-site scripting (XSS) vulnerability in folder.php in the SmartMedia 0.85 Beta module for XOOPS allows remote attack...
CVE-2009-4358freebsd-update in FreeBSD 8.0, 7.2, 7.1, 6.4, and 6.3 uses insecure permissions in its working directory (/var/db/freebs...
CVE-2009-4029The (1) dist or (2) distcheck rules in GNU Automake 1.11.1, 1.10.3, and release branches branch-1-4 through branch-1-9, ...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now