2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4328 | — | — | 2.1% | Dec 16, 2009 | Unspecified vulnerability in the DRDA Services component in IBM DB2 9.5 before FP5 allows remote authenticated users to ... |
| CVE-2009-4327 | — | — | 2.4% | Dec 16, 2009 | The Common Code Infrastructure component in IBM DB2 9.5 before FP5 and 9.7 before FP1 does not properly validate the siz... |
| CVE-2009-4326 | — | — | 1.8% | Dec 16, 2009 | The RAND scalar function in the Common Code Infrastructure component in IBM DB2 9.5 before FP5 and 9.7 before FP1, when ... |
| CVE-2009-4325 | — | — | 2.7% | Dec 16, 2009 | The Client Interfaces component in IBM DB2 8.2 before FP18, 9.1 before FP8, 9.5 before FP5, and 9.7 before FP1 does not ... |
| CVE-2009-3731 | — | — | 2.8% | Dec 16, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in WebWorks Help 2.0 through 5.0 in VMware vCenter 4.0 before Update... |
| CVE-2009-4305 | — | — | 1.9% | Dec 16, 2009 | SQL injection vulnerability in the SCORM module in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 allows remote authentic... |
| CVE-2009-4304 | — | — | 1.8% | Dec 16, 2009 | Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not use a random password salt in config.php, which makes it easier f... |
| CVE-2009-4303 | — | — | 2.1% | Dec 16, 2009 | Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores (1) password hashes and (2) unspecified "secrets" in backup files, ... |
| CVE-2009-4302 | — | — | 2.6% | Dec 16, 2009 | login/index_form.html in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 links to an index page on the HTTP port even when... |
| CVE-2009-4301 | — | — | 1.4% | Dec 16, 2009 | mnet/lib.php in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7, when MNET services are enabled, does not properly check p... |
| CVE-2009-4300 | — | — | 2.2% | Dec 16, 2009 | Multiple unspecified authentication plugins in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 store the MD5 hashes for pa... |
| CVE-2009-4299 | — | — | 2.1% | Dec 16, 2009 | mod/glossary/showentry.php in the Glossary module for Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not properly pe... |
| CVE-2009-4298 | — | — | 1.6% | Dec 16, 2009 | The LAMS module (mod/lams) for Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores the (1) username, (2) firstname, and... |
| CVE-2009-4297 | — | — | 1.2% | Dec 16, 2009 | Multiple cross-site request forgery (CSRF) vulnerabilities in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 allow remote... |
| CVE-2009-4136 | — | — | 3.6% | Dec 15, 2009 | PostgreSQL 7.4.x before 7.4.27, 8.0.x before 8.0.23, 8.1.x before 8.1.19, 8.2.x before 8.2.15, 8.3.x before 8.3.9, and 8... |
| CVE-2009-4034 | — | — | 2.1% | Dec 15, 2009 | PostgreSQL 7.4.x before 7.4.27, 8.0.x before 8.0.23, 8.1.x before 8.1.19, 8.2.x before 8.2.15, 8.3.x before 8.3.9, and 8... |
| CVE-2009-3554 | — | — | 0.4% | Dec 15, 2009 | Twiddle in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP08 and 4.3 before 4... |
| CVE-2009-2405 | — | — | 2.5% | Dec 15, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the Web Console in the Application Server in Red Hat JBoss Enterp... |
| CVE-2009-1380 | — | — | 2.3% | Dec 15, 2009 | Cross-site scripting (XSS) vulnerability in JMX-Console in JBossAs in Red Hat JBoss Enterprise Application Platform (aka... |
| CVE-2009-4323 | — | — | 2.6% | Dec 14, 2009 | The installation for Zen Cart stores sensitive information and insecure programs under the (1) docs, (2) extras, and (3)... |
| CVE-2009-4322 | — | — | 1.3% | Dec 14, 2009 | extras/ipn_test_return.php in Zen Cart allows remote attackers to obtain sensitive information via a direct request, whi... |
| CVE-2009-4321 | — | — | 2.5% | Dec 14, 2009 | extras/curltest.php in Zen Cart 1.3.8 and 1.3.8a, and possibly other versions, allows remote attackers to read arbitrary... |
| CVE-2009-4320 | — | — | 1.1% | Dec 14, 2009 | Cross-site scripting (XSS) vulnerability in searchform.php in The Next Generation of Genealogy Sitebuilding (TNG) 7.1.2 ... |
| CVE-2009-4319 | — | — | 1.7% | Dec 14, 2009 | PHP remote file inclusion vulnerability in js/bbcodepress/bbcode-form.php in eoCMS 0.9.03 and earlier, when register_glo... |
| CVE-2009-4318 | — | — | 1.1% | Dec 14, 2009 | Cross-site scripting (XSS) vulnerability in index.php in Real Estate Manager 1.0.1 allows remote attackers to inject arb... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now