2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4030 | — | — | 0.4% | Nov 30, 2009 | MySQL 5.1.x before 5.1.41 allows local users to bypass certain privilege checks by calling CREATE TABLE on a MyISAM tabl... |
| CVE-2009-4028 | — | — | 1.8% | Nov 30, 2009 | The vio_verify_callback function in viosslfactories.c in MySQL 5.0.x before 5.0.88 and 5.1.x before 5.1.41, when OpenSSL... |
| CVE-2009-4019 | — | — | 16.3% | Nov 30, 2009 | mysqld in MySQL 5.0.x before 5.0.88 and 5.1.x before 5.1.41 does not (1) properly handle errors during execution of cert... |
| CVE-2009-4110 | — | — | 1.7% | Nov 29, 2009 | Cross-site scripting (XSS) vulnerability in the search functionality in DotNetNuke 4.8 through 5.1.4 allows remote attac... |
| CVE-2009-4109 | — | — | 1.2% | Nov 29, 2009 | The install wizard in DotNetNuke 4.0 through 5.1.4 does not prevent anonymous users from accessing functionality related... |
| CVE-2009-4108 | — | — | 2.4% | Nov 29, 2009 | XM Easy Personal FTP Server 5.8.0 allows remote authenticated users to cause a denial of service (crash) by uploading or... |
| CVE-2009-4107 | — | — | 4.8% | Nov 29, 2009 | Buffer overflow in Invisible Browsing 5.0.52 allows user-assisted remote attackers to execute arbitrary code via a craft... |
| CVE-2009-4106 | — | — | 2.4% | Nov 29, 2009 | Unrestricted file upload vulnerability in admintools/editpage-2.php in Agoko CMS 0.4 and earlier allows remote attackers... |
| CVE-2009-4105 | — | — | 3.5% | Nov 29, 2009 | TYPSoft FTP Server 1.10 allows remote authenticated users to cause a denial of service (crash) by sending an APPE (appen... |
| CVE-2009-4104 | — | — | 2.1% | Nov 29, 2009 | SQL injection vulnerability in Lyften Designs LyftenBloggie (com_lyftenbloggie) component 1.0.4 for Joomla! allows remot... |
| CVE-2009-4103 | — | — | 2.4% | Nov 29, 2009 | Buffer overflow in Robo-FTP 3.6.17, and possibly other versions, allows remote FTP servers to cause a denial of service ... |
| CVE-2009-4102 | — | — | 3.4% | Nov 29, 2009 | Sage 1.4.3 and earlier extension for Firefox performs certain operations with chrome privileges, which allows remote att... |
| CVE-2009-4101 | — | — | 3.6% | Nov 29, 2009 | infoRSS 1.1.4.2 and earlier extension for Firefox performs certain operations with chrome privileges, which allows remot... |
| CVE-2009-4100 | — | — | 3.9% | Nov 29, 2009 | Yoono extension before 6.1.1 for Firefox performs certain operations with chrome privileges, which allows user-assisted ... |
| CVE-2009-4099 | — | — | 2.3% | Nov 29, 2009 | SQL injection vulnerability in the Google Calendar GCalendar (com_gcalendar) component 1.1.2, 2.1.4, and possibly earlie... |
| CVE-2009-4098 | — | — | 18.7% | Nov 29, 2009 | Unrestricted file upload vulnerability in banner-edit.php in OpenX adserver 2.8.1 and earlier allows remote authenticate... |
| CVE-2009-4097 | — | — | 5.8% | Nov 29, 2009 | Stack-based buffer overflow in the MplayInputFile function in Serenity Audio Player 3.2.3 and earlier allows remote atta... |
| CVE-2009-4096 | — | — | 2.3% | Nov 29, 2009 | RADIO istek scripti 2.5 stores sensitive information under the web root with insufficient access control, which allows r... |
| CVE-2009-4111 | — | — | 1.6% | Nov 29, 2009 | Argument injection vulnerability in Mail/sendmail.php in the Mail package 1.1.14, 1.2.0b2, and possibly other versions f... |
| CVE-2009-4081 | — | — | 0.3% | Nov 29, 2009 | Untrusted search path vulnerability in dstat before r3199 allows local users to gain privileges via a Trojan horse Pytho... |
| CVE-2009-4080 | — | — | 0.3% | Nov 29, 2009 | Multiple unspecified vulnerabilities in ldap_cachemgr (aka the LDAP client configuration cache daemon) in Sun Solaris 9 ... |
| CVE-2009-3894 | — | — | 0.3% | Nov 29, 2009 | Multiple untrusted search path vulnerabilities in dstat before 0.7.0 allow local users to gain privileges via a Trojan h... |
| CVE-2009-3736 | — | — | 0.4% | Nov 29, 2009 | ltdl.c in libltdl in GNU Libtool 1.5.x, and 2.2.6 before 2.2.6b, as used in Ham Radio Control Libraries, Q, and possibly... |
| CVE-2009-4025 | — | — | 6.1% | Nov 29, 2009 | Argument injection vulnerability in the traceroute function in Traceroute.php in the Net_Traceroute package before 0.21.... |
| CVE-2009-4024 | — | — | 6.1% | Nov 29, 2009 | Argument injection vulnerability in the ping function in Ping.php in the Net_Ping package before 2.4.5 for PEAR allows r... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now