2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4317 | — | — | 1.1% | Dec 14, 2009 | Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Cart allows remote attackers to inject arbitrary w... |
| CVE-2009-4316 | — | — | 0.9% | Dec 14, 2009 | Cross-site scripting (XSS) vulnerability in searchresults_main.php in ZeeLyrics 3x allows remote attackers to inject arb... |
| CVE-2009-4315 | — | — | 2.0% | Dec 14, 2009 | Directory traversal vulnerability in admin/ajaxsave.php in Nuggetz CMS 1.0, when magic_quotes_gpc is disabled, allows re... |
| CVE-2009-4314 | — | — | 0.3% | Dec 14, 2009 | Sun Ray Server Software 4.1 on Solaris 10, when Automatic Multi-Group Hotdesking (AMGH) is enabled, responds to a logout... |
| CVE-2009-4130 | — | — | 1.0% | Dec 14, 2009 | Visual truncation vulnerability in the MakeScriptDialogTitle function in nsGlobalWindow.cpp in Mozilla Firefox allows re... |
| CVE-2009-4129 | — | — | 0.8% | Dec 14, 2009 | Race condition in Mozilla Firefox allows remote attackers to produce a JavaScript message with a spoofed domain associat... |
| CVE-2009-4313 | — | — | 20.7% | Dec 13, 2009 | ir32_32.dll 3.24.15.3 in the Indeo32 codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows rem... |
| CVE-2009-4312 | — | — | 20.7% | Dec 13, 2009 | Unspecified vulnerability in the Indeo codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows r... |
| CVE-2009-4311 | — | — | 21.9% | Dec 13, 2009 | Unspecified vulnerability in the Indeo codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows r... |
| CVE-2009-4310 | — | — | 24.1% | Dec 13, 2009 | Stack-based buffer overflow in the Intel Indeo41 codec for Windows Media Player in Microsoft Windows 2000 SP4, XP SP2 an... |
| CVE-2009-4309 | — | — | 24.1% | Dec 13, 2009 | Heap-based buffer overflow in the Intel Indeo41 codec for Windows Media Player in Microsoft Windows 2000 SP4, XP SP2 and... |
| CVE-2009-4308 | — | — | 3.5% | Dec 13, 2009 | The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-a... |
| CVE-2009-4307 | — | — | 3.4% | Dec 13, 2009 | The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote a... |
| CVE-2009-4306 | — | — | 0.4% | Dec 13, 2009 | Unspecified vulnerability in the EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the... |
| CVE-2009-4210 | — | — | 16.5% | Dec 13, 2009 | The Indeo codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to cause a de... |
| CVE-2009-4131 | — | — | 0.8% | Dec 13, 2009 | The EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel before 2.6.32-g... |
| CVE-2009-4132 | — | — | — | Dec 12, 2009 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-4214. Reason: This candidate is a duplicate of... |
| CVE-2009-3908 | — | — | — | Dec 12, 2009 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-3608. Reason: This candidate is a duplicate of ... |
| CVE-2009-3907 | — | — | — | Dec 12, 2009 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-3607. Reason: This candidate is a duplicate of ... |
| CVE-2009-3906 | — | — | — | Dec 12, 2009 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-3606. Reason: This candidate is a duplicate of ... |
| CVE-2009-4296 | — | — | 1.3% | Dec 11, 2009 | SQL injection vulnerability in the Taxonomy Timer module 5.x-1.8 and earlier and 6.x-alpha1 and earlier for Drupal allow... |
| CVE-2009-4295 | — | — | 1.4% | Dec 11, 2009 | Sun Ray Server Software 4.0 and 4.1 does not generate a unique DSA private key for the firmware on each Sun Ray 1, 1g, 1... |
| CVE-2009-4294 | — | — | 5.7% | Dec 11, 2009 | Unspecified vulnerability in the Authentication Manager (aka utauthd) in Sun Ray Server Software 4.0 and 4.1 allows remo... |
| CVE-2009-4135 | — | — | 0.4% | Dec 11, 2009 | The distcheck rule in dist-check.mk in GNU coreutils 5.2.1 through 8.1 allows local users to gain privileges via a symli... |
| CVE-2009-4124 | — | — | 3.9% | Dec 11, 2009 | Heap-based buffer overflow in the rb_str_justify function in string.c in Ruby 1.9.1 before 1.9.1-p376 allows context-dep... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now