2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4375 | — | — | 1.0% | Dec 21, 2009 | SQL injection vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Manag... |
| CVE-2009-4374 | — | — | 1.6% | Dec 21, 2009 | Directory traversal vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information... |
| CVE-2009-4373 | — | — | 3.0% | Dec 21, 2009 | Unrestricted file upload vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Inform... |
| CVE-2009-4372 | — | — | 4.8% | Dec 21, 2009 | AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and possibly other versions before 2.1.5-4, allows... |
| CVE-2009-4371 | — | — | 0.9% | Dec 21, 2009 | Cross-site scripting (XSS) vulnerability in the Locale module (modules/locale/locale.module) in Drupal Core 6.14, and po... |
| CVE-2009-4370 | — | — | 0.9% | Dec 21, 2009 | Cross-site scripting (XSS) vulnerability in the Menu module (modules/menu/menu.admin.inc) in Drupal Core 6.x before 6.15... |
| CVE-2009-4369 | — | — | 1.1% | Dec 21, 2009 | Cross-site scripting (XSS) vulnerability in the Contact module (modules/contact/contact.admin.inc or modules/contact/con... |
| CVE-2009-4368 | — | — | 2.5% | Dec 21, 2009 | Multiple unspecified vulnerabilities in Centreon before 2.1.4 have unknown impact and attack vectors in the (1) ping too... |
| CVE-2009-4367 | — | — | 6.1% | Dec 21, 2009 | The Staging Webservice ("sitecore modules/staging/service/api.asmx") in Sitecore Staging Module 5.4.0 rev.080625 and ear... |
| CVE-2009-4366 | — | — | 1.5% | Dec 21, 2009 | Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Blog 1.0 allows remote attackers to inject arbitra... |
| CVE-2009-4365 | — | — | 0.9% | Dec 21, 2009 | Multiple cross-site request forgery (CSRF) vulnerabilities in admin.php in ScriptsEz Ez Blog 1.0 allow remote attackers ... |
| CVE-2009-4364 | — | — | 1.5% | Dec 21, 2009 | Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Blog allows remote attackers to inject arbitrary w... |
| CVE-2009-4363 | — | — | 1.4% | Dec 21, 2009 | Text_Filter/lib/Horde/Text/Filter/Xss.php in Horde Application Framework before 3.3.6, Horde Groupware before 1.2.5, and... |
| CVE-2009-4362 | — | — | 0.4% | Dec 21, 2009 | Multiple buffer overflows in qosmod in IBM AIX 6.1 allow local users to cause a denial of service (application crash) or... |
| CVE-2009-4361 | — | — | 0.4% | Dec 21, 2009 | Multiple buffer overflows in qoslist in IBM AIX 6.1 allow local users to cause a denial of service (application crash) o... |
| CVE-2009-4270 | — | — | 6.9% | Dec 21, 2009 | Stack-based buffer overflow in the errprintf function in base/gsmisc.c in ghostscript 8.64 through 8.70 allows remote at... |
| CVE-2009-4261 | — | — | 3.3% | Dec 21, 2009 | Multiple directory traversal vulnerabilities in the iallocator framework in Ganeti 1.2.4 through 1.2.8, 2.0.0 through 2.... |
| CVE-2009-4143 | — | — | 2.9% | Dec 21, 2009 | PHP before 5.2.12 does not properly handle session data, which has unspecified impact and attack vectors related to (1) ... |
| CVE-2009-4142 | — | — | 6.5% | Dec 21, 2009 | The htmlspecialchars function in PHP before 5.2.12 does not properly handle (1) overlong UTF-8 sequences, (2) invalid Sh... |
| CVE-2009-3792 | — | — | 4.3% | Dec 21, 2009 | Directory traversal vulnerability in Adobe Flash Media Server (FMS) before 3.5.3 allows attackers to load arbitrary DLL ... |
| CVE-2009-3701 | — | — | 4.8% | Dec 21, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the administration interface in Horde Application Framework befor... |
| CVE-2009-4360 | — | — | 1.0% | Dec 20, 2009 | SQL injection vulnerability in modules/content/index.php in the Content module 0.5 for XOOPS allows remote attackers to ... |
| CVE-2009-4359 | — | — | 1.5% | Dec 20, 2009 | Cross-site scripting (XSS) vulnerability in folder.php in the SmartMedia 0.85 Beta module for XOOPS allows remote attack... |
| CVE-2009-4358 | — | — | 0.3% | Dec 20, 2009 | freebsd-update in FreeBSD 8.0, 7.2, 7.1, 6.4, and 6.3 uses insecure permissions in its working directory (/var/db/freebs... |
| CVE-2009-4029 | — | — | 0.5% | Dec 20, 2009 | The (1) dist or (2) distcheck rules in GNU Automake 1.11.1, 1.10.3, and release branches branch-1-4 through branch-1-9, ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now