2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

CVE IDSeverityCVSSDescription
CVE-2009-4030——MySQL 5.1.x before 5.1.41 allows local users to bypass certain privilege checks by calling CREATE TABLE on a MyISAM tabl...
CVE-2009-4028——The vio_verify_callback function in viosslfactories.c in MySQL 5.0.x before 5.0.88 and 5.1.x before 5.1.41, when OpenSSL...
CVE-2009-4019——mysqld in MySQL 5.0.x before 5.0.88 and 5.1.x before 5.1.41 does not (1) properly handle errors during execution of cert...
CVE-2009-4110——Cross-site scripting (XSS) vulnerability in the search functionality in DotNetNuke 4.8 through 5.1.4 allows remote attac...
CVE-2009-4109——The install wizard in DotNetNuke 4.0 through 5.1.4 does not prevent anonymous users from accessing functionality related...
CVE-2009-4108——XM Easy Personal FTP Server 5.8.0 allows remote authenticated users to cause a denial of service (crash) by uploading or...
CVE-2009-4107——Buffer overflow in Invisible Browsing 5.0.52 allows user-assisted remote attackers to execute arbitrary code via a craft...
CVE-2009-4106——Unrestricted file upload vulnerability in admintools/editpage-2.php in Agoko CMS 0.4 and earlier allows remote attackers...
CVE-2009-4105——TYPSoft FTP Server 1.10 allows remote authenticated users to cause a denial of service (crash) by sending an APPE (appen...
CVE-2009-4104——SQL injection vulnerability in Lyften Designs LyftenBloggie (com_lyftenbloggie) component 1.0.4 for Joomla! allows remot...
CVE-2009-4103——Buffer overflow in Robo-FTP 3.6.17, and possibly other versions, allows remote FTP servers to cause a denial of service ...
CVE-2009-4102——Sage 1.4.3 and earlier extension for Firefox performs certain operations with chrome privileges, which allows remote att...
CVE-2009-4101——infoRSS 1.1.4.2 and earlier extension for Firefox performs certain operations with chrome privileges, which allows remot...
CVE-2009-4100——Yoono extension before 6.1.1 for Firefox performs certain operations with chrome privileges, which allows user-assisted ...
CVE-2009-4099——SQL injection vulnerability in the Google Calendar GCalendar (com_gcalendar) component 1.1.2, 2.1.4, and possibly earlie...
CVE-2009-4098——Unrestricted file upload vulnerability in banner-edit.php in OpenX adserver 2.8.1 and earlier allows remote authenticate...
CVE-2009-4097——Stack-based buffer overflow in the MplayInputFile function in Serenity Audio Player 3.2.3 and earlier allows remote atta...
CVE-2009-4096——RADIO istek scripti 2.5 stores sensitive information under the web root with insufficient access control, which allows r...
CVE-2009-4111——Argument injection vulnerability in Mail/sendmail.php in the Mail package 1.1.14, 1.2.0b2, and possibly other versions f...
CVE-2009-4081——Untrusted search path vulnerability in dstat before r3199 allows local users to gain privileges via a Trojan horse Pytho...
CVE-2009-4080——Multiple unspecified vulnerabilities in ldap_cachemgr (aka the LDAP client configuration cache daemon) in Sun Solaris 9 ...
CVE-2009-3894——Multiple untrusted search path vulnerabilities in dstat before 0.7.0 allow local users to gain privileges via a Trojan h...
CVE-2009-3736——ltdl.c in libltdl in GNU Libtool 1.5.x, and 2.2.6 before 2.2.6b, as used in Ham Radio Control Libraries, Q, and possibly...
CVE-2009-4025——Argument injection vulnerability in the traceroute function in Traceroute.php in the Net_Traceroute package before 0.21....
CVE-2009-4024——Argument injection vulnerability in the ping function in Ping.php in the Net_Ping package before 2.4.5 for PEAR allows r...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now