2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4196 | — | — | 1.0% | Dec 4, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in multiple scripts in Forms/ in Huawei MT882 V100R002B020 ARG-T run... |
| CVE-2009-4195 | — | — | 70.7% | Dec 4, 2009 | Buffer overflow in Adobe Illustrator CS4 14.0.0, CS3 13.0.3 and earlier, and CS3 13.0.0 allows remote attackers to execu... |
| CVE-2009-2631 | — | — | 5.1% | Dec 4, 2009 | Multiple clientless SSL VPN products that run in web browsers, including Stonesoft StoneGate; Cisco ASA; SonicWALL E-Cla... |
| CVE-2009-4193 | — | — | 0.3% | Dec 3, 2009 | Merkaartor 0.14 allows local users to append data to arbitrary files via a symlink attack on the /tmp/merkaartor.log tem... |
| CVE-2009-4192 | — | — | 2.7% | Dec 3, 2009 | Directory traversal vulnerability in dialog/file_manager.php in Interspire Knowledge Manager 5 allows remote attackers t... |
| CVE-2009-1566 | — | — | 6.7% | Dec 3, 2009 | Integer overflow in Roxio Easy Media Creator 9.0.136, and Roxio Creator 2010 before SP1, might allow remote attackers to... |
| CVE-2009-4191 | — | — | 0.3% | Dec 3, 2009 | Unspecified vulnerability in the kernel in Sun Solaris 10 and OpenSolaris 2009.06 on the x86-64 platform allows local us... |
| CVE-2009-4190 | — | — | 1.2% | Dec 3, 2009 | Unspecified vulnerability in the kernel in Sun OpenSolaris 2009.06 allows remote attackers to cause a denial of service ... |
| CVE-2009-4189 | — | — | 72.7% | Dec 3, 2009 | HP Operations Manager has a default password of OvW*busr1 for the ovwebusr account, which allows remote attackers to exe... |
| CVE-2009-4188 | — | — | 70.2% | Dec 3, 2009 | HP Operations Dashboard has a default password of j2deployer for the j2deployer account, which allows remote attackers t... |
| CVE-2009-4187 | — | — | 1.7% | Dec 3, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the Gateway component in Sun Java System Portal Server 6.3.1, 7.1... |
| CVE-2009-4186 | — | — | 6.5% | Dec 3, 2009 | Stack consumption vulnerability in Apple Safari 4.0.3 on Windows allows remote attackers to cause a denial of service (a... |
| CVE-2009-1567 | — | — | 4.8% | Dec 3, 2009 | Multiple stack-based buffer overflows in the Lateral Arts Photobox uploader ActiveX control 1.x before 1.3, and 2.2.0.6,... |
| CVE-2009-0895 | — | — | 6.8% | Dec 3, 2009 | Integer overflow in Novell eDirectory 8.7.3.x before 8.7.3.10 ftf2 and 8.8.x before 8.8.5.2 allows remote attackers to e... |
| CVE-2009-4175 | — | — | 2.8% | Dec 2, 2009 | CutePHP CuteNews 1.4.6 and UTF-8 CuteNews before 8b allows remote attackers to obtain sensitive information via an inval... |
| CVE-2009-4174 | — | — | 1.6% | Dec 2, 2009 | The editnews module in CutePHP CuteNews 1.4.6 and UTF-8 CuteNews before 8b, when magic_quotes_gpc is disabled, allows re... |
| CVE-2009-4173 | — | — | 1.0% | Dec 2, 2009 | Cross-site request forgery (CSRF) vulnerability in CutePHP CuteNews 1.4.6 and UTF-8 CuteNews before 8b allows remote att... |
| CVE-2009-4172 | — | — | 1.6% | Dec 2, 2009 | Cross-site scripting (XSS) vulnerability in index.php in CutePHP CuteNews 1.4.6 and UTF-8 CuteNews 8 and 8b, when magic_... |
| CVE-2009-4171 | — | — | 5.1% | Dec 2, 2009 | An ActiveX control in YahooBridgeLib.dll for Yahoo! Messenger 9.0.0.2162, and possibly other 9.0 versions, allows remote... |
| CVE-2009-4147 | — | — | 3.7% | Dec 2, 2009 | The _rtld function in the Run-Time Link-Editor (rtld) in libexec/rtld-elf/rtld.c in FreeBSD 7.1 and 8.0 does not clear t... |
| CVE-2009-4127 | — | — | 4.1% | Dec 2, 2009 | Unspecified vulnerability in Wikipedia Toolbar extension before 0.5.9.2 for Firefox allows user-assisted remote attacker... |
| CVE-2009-4170 | — | — | 6.4% | Dec 2, 2009 | WP-Cumulus Plug-in 1.20 for WordPress, and possibly other versions, allows remote attackers to obtain sensitive informat... |
| CVE-2009-4169 | — | — | 1.8% | Dec 2, 2009 | Cross-site scripting (XSS) vulnerability in wp-cumulus.php in the WP-Cumulus Plug-in before 1.22 for WordPress allows re... |
| CVE-2009-4168 | — | — | 5.5% | Dec 2, 2009 | Cross-site scripting (XSS) vulnerability in Roy Tanck tagcloud.swf, as used in the WP-Cumulus plugin before 1.23 for Wor... |
| CVE-2009-4146 | — | — | 3.9% | Dec 2, 2009 | The _rtld function in the Run-Time Link-Editor (rtld) in libexec/rtld-elf/rtld.c in FreeBSD 7.1, 7.2, and 8.0 does not c... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now