2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4382 | — | — | 1.5% | Dec 22, 2009 | Cross-site scripting (XSS) vulnerability in module.php in PHPFABER CMS, possibly 1.3.36, allows remote attackers to inje... |
| CVE-2009-4381 | — | — | 1.8% | Dec 22, 2009 | Cross-site scripting (XSS) vulnerability in index.php in texmedia Million Pixel Script 3 allows remote attackers to inje... |
| CVE-2009-4380 | — | — | 1.1% | Dec 22, 2009 | Multiple SQL injection vulnerabilities in Valarsoft Webmatic before 3.0.3 allow remote attackers to execute arbitrary SQ... |
| CVE-2009-4379 | — | — | 1.0% | Dec 22, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Valarsoft Webmatic before 3.0.3 allow remote attackers to inject ... |
| CVE-2009-4140 | — | — | 75.8% | Dec 22, 2009 | Unrestricted file upload vulnerability in ofc_upload_image.php in Open Flash Chart v2 Beta 1 through v2 Lug Wyrm Charmer... |
| CVE-2009-3702 | — | — | 2.4% | Dec 22, 2009 | Multiple absolute path traversal vulnerabilities in PHP-Calendar 1.1 allow remote attackers to include and execute arbit... |
| CVE-2009-4378 | — | — | 2.3% | Dec 21, 2009 | The IPMI dissector in Wireshark 1.2.0 through 1.2.4 on Windows allows remote attackers to cause a denial of service (cra... |
| CVE-2009-4377 | — | — | 2.7% | Dec 21, 2009 | The (1) SMB and (2) SMB2 dissectors in Wireshark 0.9.0 through 1.2.4 allow remote attackers to cause a denial of service... |
| CVE-2009-4376 | — | — | 6.8% | Dec 21, 2009 | Buffer overflow in the daintree_sna_read function in the Daintree SNA file parser in Wireshark 1.2.0 through 1.2.4 allow... |
| CVE-2009-4035 | — | — | 3.8% | Dec 21, 2009 | The FoFiType1::parse function in fofi/FoFiType1.cc in Xpdf 3.0.0, gpdf 2.8.2, kpdf in kdegraphics 3.3.1, and possibly ot... |
| CVE-2009-4375 | — | — | 1.0% | Dec 21, 2009 | SQL injection vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Manag... |
| CVE-2009-4374 | — | — | 1.6% | Dec 21, 2009 | Directory traversal vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information... |
| CVE-2009-4373 | — | — | 3.0% | Dec 21, 2009 | Unrestricted file upload vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Inform... |
| CVE-2009-4372 | — | — | 4.8% | Dec 21, 2009 | AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and possibly other versions before 2.1.5-4, allows... |
| CVE-2009-4371 | — | — | 0.9% | Dec 21, 2009 | Cross-site scripting (XSS) vulnerability in the Locale module (modules/locale/locale.module) in Drupal Core 6.14, and po... |
| CVE-2009-4370 | — | — | 0.9% | Dec 21, 2009 | Cross-site scripting (XSS) vulnerability in the Menu module (modules/menu/menu.admin.inc) in Drupal Core 6.x before 6.15... |
| CVE-2009-4369 | — | — | 1.1% | Dec 21, 2009 | Cross-site scripting (XSS) vulnerability in the Contact module (modules/contact/contact.admin.inc or modules/contact/con... |
| CVE-2009-4368 | — | — | 2.5% | Dec 21, 2009 | Multiple unspecified vulnerabilities in Centreon before 2.1.4 have unknown impact and attack vectors in the (1) ping too... |
| CVE-2009-4367 | — | — | 6.1% | Dec 21, 2009 | The Staging Webservice ("sitecore modules/staging/service/api.asmx") in Sitecore Staging Module 5.4.0 rev.080625 and ear... |
| CVE-2009-4366 | — | — | 1.5% | Dec 21, 2009 | Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Blog 1.0 allows remote attackers to inject arbitra... |
| CVE-2009-4365 | — | — | 0.9% | Dec 21, 2009 | Multiple cross-site request forgery (CSRF) vulnerabilities in admin.php in ScriptsEz Ez Blog 1.0 allow remote attackers ... |
| CVE-2009-4364 | — | — | 1.5% | Dec 21, 2009 | Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Blog allows remote attackers to inject arbitrary w... |
| CVE-2009-4363 | — | — | 1.4% | Dec 21, 2009 | Text_Filter/lib/Horde/Text/Filter/Xss.php in Horde Application Framework before 3.3.6, Horde Groupware before 1.2.5, and... |
| CVE-2009-4362 | — | — | 0.4% | Dec 21, 2009 | Multiple buffer overflows in qosmod in IBM AIX 6.1 allow local users to cause a denial of service (application crash) or... |
| CVE-2009-4361 | — | — | 0.4% | Dec 21, 2009 | Multiple buffer overflows in qoslist in IBM AIX 6.1 allow local users to cause a denial of service (application crash) o... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now