2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4023 | — | — | 2.4% | Nov 29, 2009 | Argument injection vulnerability in the sendmail implementation of the Mail::Send method (Mail/sendmail.php) in the Mail... |
| CVE-2009-4095 | — | — | 1.5% | Nov 29, 2009 | myPhile 1.2.1 allows remote attackers to bypass authentication via an empty password. NOTE: some of these details are o... |
| CVE-2009-4094 | — | — | 2.3% | Nov 29, 2009 | PHP remote file inclusion vulnerability in class/php/d4m_ajax_pagenav.php in the D4J eZine (com_ezine) component 2.1 for... |
| CVE-2009-4093 | — | — | 3.9% | Nov 29, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in comments.php in Simplog 0.9.3.2, and possibly earlier, allow remo... |
| CVE-2009-4092 | — | — | 5.4% | Nov 29, 2009 | Cross-site request forgery (CSRF) vulnerability in user.php in Simplog 0.9.3.2, and possibly earlier, allows remote atta... |
| CVE-2009-4091 | — | — | 6.5% | Nov 29, 2009 | comments.php in Simplog 0.9.3.2, and possibly earlier, does not properly restrict access, which allows remote attackers ... |
| CVE-2009-4090 | — | — | 3.2% | Nov 29, 2009 | Unrestricted file upload vulnerability in ajax/addComment.php in telepark.wiki 2.4.23 and earlier script allows remote a... |
| CVE-2009-4089 | — | — | 6.6% | Nov 29, 2009 | telepark.wiki 2.4.23 and earlier allows remote attackers to bypass authorization and (1) delete arbitrary pages via a mo... |
| CVE-2009-4088 | — | — | 2.8% | Nov 29, 2009 | Multiple directory traversal vulnerabilities in telepark.wiki 2.4.23 and earlier allow remote attackers to read arbitrar... |
| CVE-2009-4087 | — | — | 1.1% | Nov 29, 2009 | Cross-site scripting (XSS) vulnerability in index.php in telepark.wiki 2.4.23 and earlier allows remote attackers to inj... |
| CVE-2009-4086 | — | — | 4.8% | Nov 29, 2009 | CRLF injection vulnerability in Xerver HTTP Server 4.31 and 4.32 allows remote attackers to inject arbitrary HTTP header... |
| CVE-2009-4085 | — | — | 2.3% | Nov 29, 2009 | PHP remote file inclusion vulnerability in assets/plugins/mp3_id/mp3_id.php in PHP Traverser 0.8.0 allows remote attacke... |
| CVE-2009-4084 | — | — | 1.1% | Nov 29, 2009 | SQL injection vulnerability in the search feature in e107 0.7.16 and earlier allows remote attackers to execute arbitrar... |
| CVE-2009-4083 | — | — | 1.0% | Nov 29, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in e107 0.7.16 and earlier allow remote attackers to inject arbitrar... |
| CVE-2009-4082 | — | — | 3.0% | Nov 29, 2009 | PHP remote file inclusion vulnerability in forums/Forum_Include/index.php in Outreach Project Tool (OPT) 1.2.7 and earli... |
| CVE-2009-4032 | — | — | 5.7% | Nov 29, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Cacti 0.8.7e allow remote attackers to inject arbitrary web scrip... |
| CVE-2009-4031 | — | — | 3.1% | Nov 29, 2009 | The do_insn_fetch function in arch/x86/kvm/emulate.c in the x86 emulator in the KVM subsystem in the Linux kernel before... |
| CVE-2009-4018 | — | — | 11.3% | Nov 29, 2009 | The proc_open function in ext/standard/proc_open.c in PHP before 5.2.11 and 5.3.x before 5.3.1 does not enforce the (1) ... |
| CVE-2009-4079 | — | — | 0.7% | Nov 25, 2009 | Cross-site request forgery (CSRF) vulnerability in Redmine 0.8.5 and earlier allows remote attackers to hijack the authe... |
| CVE-2009-4078 | — | — | 1.5% | Nov 25, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Redmine 0.8.5 and earlier allow remote attackers to inject arbitr... |
| CVE-2009-4077 | — | — | 1.3% | Nov 25, 2009 | Cross-site request forgery (CSRF) vulnerability in Roundcube Webmail 0.2.2 and earlier allows remote attackers to hijack... |
| CVE-2009-4076 | — | — | 1.3% | Nov 25, 2009 | Cross-site request forgery (CSRF) vulnerability in Roundcube Webmail 0.2.2 and earlier allows remote attackers to hijack... |
| CVE-2009-4075 | — | — | 2.7% | Nov 25, 2009 | Unspecified vulnerability in the timeout mechanism in sshd in Sun Solaris 10, and OpenSolaris snv_99 through snv_123, al... |
| CVE-2009-4074 | — | — | 14.8% | Nov 25, 2009 | The XSS Filter in Microsoft Internet Explorer 8 allows remote attackers to leverage the "response-changing mechanism" to... |
| CVE-2009-4022 | — | — | 8.0% | Nov 25, 2009 | Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P4, 9.5 before 9.5.2-P1, 9.6 before 9.6.1-P2... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now