2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4033 | — | — | 0.3% | Dec 8, 2009 | A certain Red Hat patch for acpid 1.0.4 effectively triggers a call to the open function with insufficient arguments, wh... |
| CVE-2009-4228 | — | — | 1.7% | Dec 8, 2009 | Stack consumption vulnerability in u_bound.c in Xfig 3.2.5b and earlier allows remote attackers to cause a denial of ser... |
| CVE-2009-4227 | — | — | 10.6% | Dec 8, 2009 | Stack-based buffer overflow in the read_1_3_textobject function in f_readold.c in Xfig 3.2.5b and earlier, and in the re... |
| CVE-2009-4226 | — | — | 1.8% | Dec 8, 2009 | Race condition in the IP module in the kernel in Sun OpenSolaris snv_106 through snv_124 allows remote attackers to caus... |
| CVE-2009-4225 | — | — | 30.6% | Dec 8, 2009 | Stack-based buffer overflow in the PestPatrol ActiveX control (ppctl.dll) 5.6.7.9 in CA eTrust PestPatrol allows remote ... |
| CVE-2009-3586 | — | — | 6.4% | Dec 8, 2009 | Off-by-one error in src/http.c in CoreHTTP 0.5.3.1 and earlier allows remote attackers to cause a denial of service or p... |
| CVE-2009-3994 | — | — | 7.0% | Dec 8, 2009 | Stack-based buffer overflow in the GetUID function in src-IL/src/il_dicom.c in DevIL 1.7.8 allows remote attackers to ca... |
| CVE-2009-2843 | — | — | 2.1% | Dec 8, 2009 | Java for Mac OS X 10.5 before Update 6 and 10.6 before Update 1 accepts expired certificates for applets, which makes it... |
| CVE-2009-2749 | — | — | 1.1% | Dec 8, 2009 | Feature Pack for Communications Enabled Applications (CEA) before 1.0.0.1 for IBM WebSphere Application Server 7.0.0.7 u... |
| CVE-2009-4224 | — | — | 2.6% | Dec 7, 2009 | Multiple PHP remote file inclusion vulnerabilities in SweetRice 0.5.4, 0.5.3, and earlier allow remote attackers to exec... |
| CVE-2009-4223 | — | — | 55.5% | Dec 7, 2009 | PHP remote file inclusion vulnerability in adm/krgourl.php in KR-Web 1.1b2 and earlier allows remote attackers to execut... |
| CVE-2009-4222 | — | — | 2.2% | Dec 7, 2009 | phpBazar 2.1.1fix and earlier does not require administrative authentication for admin/admin.php, which allows remote at... |
| CVE-2009-4221 | — | — | 1.0% | Dec 7, 2009 | SQL injection vulnerability in classified.php in phpBazar 2.1.1fix and earlier allows remote attackers to execute arbitr... |
| CVE-2009-4220 | — | — | 2.3% | Dec 7, 2009 | PHP remote file inclusion vulnerability in includes/classes/pctemplate.php in PointComma 3.8b2 and earlier allows remote... |
| CVE-2009-4219 | — | — | 9.3% | Dec 7, 2009 | Stack-based buffer overflow in the MYACTIVEX.MyActiveXCtrl.1 ActiveX control in MyActiveX.ocx 1.4.8.0 in Haihaisoft Univ... |
| CVE-2009-4218 | — | — | 0.9% | Dec 7, 2009 | Multiple SQL injection vulnerabilities in files/login.asp in JiRo's Banner System eXperience (JBSX) allow remote attacke... |
| CVE-2009-4217 | — | — | 0.9% | Dec 7, 2009 | SQL injection vulnerability in the Itamar Elharar MusicGallery (com_musicgallery) component for Joomla! allows remote at... |
| CVE-2009-4216 | — | — | 5.6% | Dec 7, 2009 | Directory traversal vulnerability in funzioni/lib/menulast.php in klinza professional cms 5.0.1 and earlier allows remot... |
| CVE-2009-4215 | — | — | 0.4% | Dec 7, 2009 | Panda Global Protection 2010, Internet Security 2010, and Antivirus Pro 2010 use weak permissions (Everyone: Full Contro... |
| CVE-2009-4214 | — | — | 3.0% | Dec 7, 2009 | Cross-site scripting (XSS) vulnerability in the strip_tags function in Ruby on Rails before 2.2.s, and 2.3.x before 2.3.... |
| CVE-2009-4211 | — | — | 1.7% | Dec 4, 2009 | The U.S. Defense Information Systems Agency (DISA) Security Readiness Review (SRR) script for the Solaris x86 platform e... |
| CVE-2009-4020 | — | — | 5.0% | Dec 4, 2009 | Stack-based buffer overflow in the hfs subsystem in the Linux kernel 2.6.32 allows remote attackers to have an unspecifi... |
| CVE-2009-3560 | — | — | 24.3% | Dec 4, 2009 | The big2_toUtf8 function in lib/xmltok.c in libexpat in Expat 2.0.1, as used in the XML-Twig module for Perl, allows con... |
| CVE-2009-4209 | — | — | 1.2% | Dec 4, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in moziloCMS 1.11.1 allow remote attackers to inj... |
| CVE-2009-4208 | — | — | 0.9% | Dec 4, 2009 | SQL injection vulnerability in the os_news module in Open-school (OS) 1.0 allows remote attackers to execute arbitrary S... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now