2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-4021 | — | — | 0.4% | Nov 25, 2009 | The fuse_direct_io function in fs/fuse/file.c in the fuse subsystem in the Linux kernel before 2.6.32-rc7 might allow at... |
| CVE-2009-3033 | — | — | 40.0% | Nov 25, 2009 | Buffer overflow in the RunCmd method in the Altiris eXpress NS Console Utilities ActiveX control in AeXNSConsoleUtilitie... |
| CVE-2009-4073 | — | — | 19.6% | Nov 24, 2009 | The printing functionality in Microsoft Internet Explorer 8 allows remote attackers to discover a local pathname, and po... |
| CVE-2009-4072 | — | — | 2.4% | Nov 24, 2009 | Unspecified vulnerability in Opera before 10.10 has unknown impact and attack vectors, related to a "moderately severe i... |
| CVE-2009-4071 | — | — | 2.2% | Nov 24, 2009 | Opera before 10.10, when exception stacktraces are enabled, places scripting error messages from a web site into variabl... |
| CVE-2009-4070 | — | — | 1.7% | Nov 24, 2009 | SQL injection vulnerability in GForge 4.5.14, 4.7.3, and possibly other versions allows remote attackers to execute arbi... |
| CVE-2009-4069 | — | — | 1.7% | Nov 24, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in GForge 4.5.14, 4.7.3, and possibly other versions allow remote at... |
| CVE-2009-3898 | — | — | 15.9% | Nov 24, 2009 | Directory traversal vulnerability in src/http/modules/ngx_http_dav_module.c in nginx (aka Engine X) before 0.7.63, and 0... |
| CVE-2009-3897 | MEDIUM | 5.5 | 0.4% | Nov 24, 2009 | Dovecot 1.2.x before 1.2.8 sets 0777 permissions during creation of certain directories at installation time, which allo... |
| CVE-2009-3896 | — | — | 10.2% | Nov 24, 2009 | src/http/ngx_http_parse.c in nginx (aka Engine X) 0.1.0 through 0.4.14, 0.5.x before 0.5.38, 0.6.x before 0.6.39, 0.7.x ... |
| CVE-2009-3578 | — | — | 4.4% | Nov 24, 2009 | Autodesk Maya 8.0, 8.5, 2008, 2009, and 2010 and Alias Wavefront Maya 6.5 and 7.0 allow remote attackers to execute arbi... |
| CVE-2009-3577 | — | — | 5.1% | Nov 24, 2009 | Autodesk 3D Studio Max (3DSMax) 6 through 9 and 2008 through 2010 allows remote attackers to execute arbitrary code via ... |
| CVE-2009-3576 | — | — | 3.2% | Nov 24, 2009 | Autodesk Softimage 7.x and Softimage XSI 6.x allow remote attackers to execute arbitrary JavaScript code via a scene pac... |
| CVE-2009-3303 | — | — | 1.7% | Nov 24, 2009 | Cross-site scripting (XSS) vulnerability in www/help/tracker.php in GForge 4.5.14, 4.7 rc2, and 4.8.1 allows remote atta... |
| CVE-2009-4066 | — | — | 0.7% | Nov 24, 2009 | Multiple cross-site request forgery (CSRF) vulnerabilities in the "My Account" feature in PHPList Integration module 5 b... |
| CVE-2009-4065 | — | — | 1.2% | Nov 24, 2009 | Cross-site scripting (XSS) vulnerability in the settings page in the Strongarm module 6.x before 6.x-1.1 for Drupal allo... |
| CVE-2009-4064 | — | — | 1.2% | Nov 24, 2009 | Cross-site scripting (XSS) vulnerability in the Gallery Assist module 6.x before 6.x-1.7 for Drupal allows remote attack... |
| CVE-2009-4063 | — | — | 1.2% | Nov 24, 2009 | Cross-site scripting (XSS) vulnerability in the Subgroups for Organic Groups (OG) module 5.x before 5.x-4.0 and 5.x befo... |
| CVE-2009-4062 | — | — | 1.2% | Nov 24, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the Printfriendly module 6.x before 6.x-1.6 for Drupal allow remo... |
| CVE-2009-4061 | — | — | 1.2% | Nov 24, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the Agreement module 6.x before 6.x-1.2 for Drupal allow remote a... |
| CVE-2009-4060 | — | — | 2.2% | Nov 24, 2009 | SQL injection vulnerability in includes/content/viewProd.inc.php in CubeCart before 4.3.7 remote attackers to execute ar... |
| CVE-2009-4059 | — | — | 1.0% | Nov 24, 2009 | SQL injection vulnerability in the JoomClip (com_joomclip) component for Joomla! allows remote attackers to execute arbi... |
| CVE-2009-4058 | — | — | 1.0% | Nov 24, 2009 | SQL injection vulnerability in allauctions.php in Telebid Auction Script allows remote attackers to execute arbitrary SQ... |
| CVE-2009-4057 | — | — | 1.0% | Nov 24, 2009 | SQL injection vulnerability in the inertialFATE iF Portfolio Nexus (com_if_nexus) component 1.1 for Joomla! allows remot... |
| CVE-2009-4056 | — | — | 2.5% | Nov 24, 2009 | Directory traversal vulnerability in admin/popup.php in Betsy CMS 3.5 allows remote attackers to include and execute arb... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now