2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4341 | — | — | 1.1% | Dec 17, 2009 | SQL injection vulnerability in the No indexed Search (no_indexed_search) extension 0.2.0 for TYPO3 allows remote attacke... |
| CVE-2009-4340 | — | — | 1.0% | Dec 17, 2009 | Cross-site scripting (XSS) vulnerability in the No indexed Search (no_indexed_search) extension 0.2.0 for TYPO3 allows r... |
| CVE-2009-4339 | — | — | 1.1% | Dec 17, 2009 | SQL injection vulnerability in the Subscription (mf_subscription) extension 0.2.2 for TYPO3 allows remote attackers to e... |
| CVE-2009-4338 | — | — | 1.1% | Dec 17, 2009 | SQL injection vulnerability in the Flash SlideShow (slideshow) extension 0.2.2 for TYPO3 allows remote attackers to exec... |
| CVE-2009-4337 | — | — | 1.7% | Dec 17, 2009 | SQL injection vulnerability in the Diocese of Portsmouth Calendar (pd_calendar) extension 0.4.1 and earlier for TYPO3 al... |
| CVE-2009-4336 | — | — | 1.0% | Dec 17, 2009 | Cross-site scripting (XSS) vulnerability in the Diocese of Portsmouth Calendar (pd_calendar) extension 0.4.1 and earlier... |
| CVE-2009-3987 | — | — | 1.6% | Dec 17, 2009 | The GeckoActiveXObject function in Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey before 2.0.1, gen... |
| CVE-2009-3986 | — | — | 3.7% | Dec 17, 2009 | Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey before 2.0.1, allows remote attackers to execute arb... |
| CVE-2009-3985 | — | — | 2.5% | Dec 17, 2009 | Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey before 2.0.1, allows remote attackers to associate s... |
| CVE-2009-3984 | — | — | 2.2% | Dec 17, 2009 | Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey before 2.0.1, allows remote attackers to spoof an SS... |
| CVE-2009-3983 | — | — | 2.2% | Dec 17, 2009 | Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey before 2.0.1, allows remote attackers to send authen... |
| CVE-2009-3982 | — | — | 3.9% | Dec 17, 2009 | Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox 3.5.x before 3.5.6, SeaMonkey before 2.... |
| CVE-2009-3981 | — | — | 3.7% | Dec 17, 2009 | Unspecified vulnerability in the browser engine in Mozilla Firefox before 3.0.16, SeaMonkey before 2.0.1, and Thunderbir... |
| CVE-2009-3980 | — | — | 3.7% | Dec 17, 2009 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.6, SeaMonkey before 2.0.1... |
| CVE-2009-3979 | — | — | 4.0% | Dec 17, 2009 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, SeaM... |
| CVE-2009-3389 | — | — | 4.8% | Dec 17, 2009 | Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey b... |
| CVE-2009-3388 | — | — | 2.6% | Dec 17, 2009 | liboggplay in Mozilla Firefox 3.5.x before 3.5.6 and SeaMonkey before 2.0.1 might allow context-dependent attackers to c... |
| CVE-2009-4138 | — | — | 0.4% | Dec 16, 2009 | drivers/firewire/ohci.c in the Linux kernel before 2.6.32-git9, when packet-per-buffer mode is used, allows local users ... |
| CVE-2009-4335 | — | — | 2.3% | Dec 16, 2009 | Multiple unspecified vulnerabilities in bundled stored procedures in the Spatial Extender component in IBM DB2 9.5 befor... |
| CVE-2009-4334 | — | — | 0.4% | Dec 16, 2009 | The Self Tuning Memory Manager (STMM) component in IBM DB2 9.1 before FP8, 9.5 before FP5, and 9.7 before FP1 uses 0666 ... |
| CVE-2009-4333 | — | — | 1.3% | Dec 16, 2009 | The Relational Data Services component in IBM DB2 9.5 before FP5 allows attackers to obtain the password argument from t... |
| CVE-2009-4332 | — | — | 2.4% | Dec 16, 2009 | db2pd in the Problem Determination component in IBM DB2 9.1 before FP7 and 9.5 before FP5 allows attackers to cause a de... |
| CVE-2009-4331 | — | — | 0.5% | Dec 16, 2009 | The Install component in IBM DB2 9.5 before FP5 and 9.7 before FP1 configures the High Availability (HA) scripts with in... |
| CVE-2009-4330 | — | — | 0.4% | Dec 16, 2009 | Unspecified vulnerability in db2licm in the Engine Utilities component in IBM DB2 9.5 before FP5 has unknown impact and ... |
| CVE-2009-4329 | — | — | 2.1% | Dec 16, 2009 | Unspecified vulnerability in the Engine Utilities component in IBM DB2 9.5 before FP5 allows remote authenticated users ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now