2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2980 | — | — | 8.4% | Oct 19, 2009 | Integer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allows attackers to ... |
| CVE-2009-2979 | — | — | 3.2% | Oct 19, 2009 | Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 do not properly perform XMP-XM... |
| CVE-2009-3613 | — | — | 12.5% | Oct 19, 2009 | The swiotlb functionality in the r8169 driver in drivers/net/r8169.c in the Linux kernel before 2.6.27.22 allows remote ... |
| CVE-2009-3612 | — | — | 0.4% | Oct 19, 2009 | The tcf_fill_node function in net/sched/cls_api.c in the netlink subsystem in the Linux kernel 2.6.x before 2.6.32-rc5, ... |
| CVE-2009-3546 | — | — | 10.2% | Oct 19, 2009 | The _gdGetColors function in gd_gd.c in PHP 5.2.11 and 5.3.x before 5.3.1, and the GD Graphics Library 2.x, does not pro... |
| CVE-2009-3228 | — | — | 0.4% | Oct 19, 2009 | The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6... |
| CVE-2009-2970 | — | — | 3.3% | Oct 19, 2009 | Stack-based buffer overflow in the GetUiDllVersion function in an ActiveX control in UiCheck.dll before 1.0.0.7 in UiTV ... |
| CVE-2009-3704 | — | — | 8.1% | Oct 16, 2009 | ZoIPer 2.22, and possibly other versions before 2.24 Library 5324, allows remote attackers to cause a denial of service ... |
| CVE-2009-3719 | — | — | 1.5% | Oct 16, 2009 | Cross-site scripting (XSS) vulnerability in comment.asp in Battle Blog 1.25 and 1.30 build 2 allows remote attackers to ... |
| CVE-2009-3718 | — | — | 2.0% | Oct 16, 2009 | SQL injection vulnerability in admin/authenticate.asp in Battle Blog 1.25 and 1.30 build 2 allows remote attackers to ex... |
| CVE-2009-3717 | — | — | 6.4% | Oct 16, 2009 | Heap-based buffer overflow in LucVil PatPlayer 3.9 allows remote attackers to cause a denial of service (crash) or execu... |
| CVE-2009-3716 | — | — | 3.6% | Oct 16, 2009 | Unrestricted file upload vulnerability in admin.php in MCshoutbox 1.1 allows remote authenticated users to execute arbit... |
| CVE-2009-3715 | — | — | 2.0% | Oct 16, 2009 | Multiple SQL injection vulnerabilities in scr_login.php in MCshoutbox 1.1, when magic_quotes_gpc is disabled, allow remo... |
| CVE-2009-3714 | — | — | 1.7% | Oct 16, 2009 | Cross-site scripting (XSS) vulnerability in admin_login.php in MCshoutbox 1.1 allows remote attackers to inject arbitrar... |
| CVE-2009-3713 | — | — | 1.0% | Oct 16, 2009 | SQL injection vulnerability in fichero.php in MorcegoCMS 1.7.6 and earlier allows remote attackers to execute arbitrary ... |
| CVE-2009-3712 | — | — | 1.0% | Oct 16, 2009 | Multiple SQL injection vulnerabilities in Ebay Clone 2009 allow remote attackers to execute arbitrary SQL commands via t... |
| CVE-2009-3711 | — | — | 63.9% | Oct 16, 2009 | Stack-based buffer overflow in the h_handlepeer function in http.cpp in httpdx 1.4, and possibly 1.4.3, allows remote at... |
| CVE-2009-3710 | — | — | 8.7% | Oct 16, 2009 | RioRey RIOS 4.6.6 and 4.7.0 uses an undocumented, hard-coded username (dbadmin) and password (sq!us3r) for an SSH tunnel... |
| CVE-2009-3709 | — | — | 5.9% | Oct 16, 2009 | Stack-based buffer overflow in the Meta Content Optimizer in Konae Technologies Alleycode HTML Editor 2.21 allows user-a... |
| CVE-2009-3708 | — | — | 4.5% | Oct 16, 2009 | Stack-based buffer overflow in the Meta Content Optimizer in Konae Technologies Alleycode HTML Editor 2.21 allows user-a... |
| CVE-2009-3707 | — | — | 11.1% | Oct 16, 2009 | VMware Authentication Daemon 1.0 in vmware-authd.exe in the VMware Authorization Service in VMware Workstation 7.0 befor... |
| CVE-2009-3706 | — | — | 0.3% | Oct 16, 2009 | Unspecified vulnerability in the ZFS filesystem in Sun Solaris 10, and OpenSolaris snv_100 through snv_117, allows local... |
| CVE-2009-3705 | — | — | 9.4% | Oct 16, 2009 | PHP remote file inclusion vulnerability in debugger.php in Achievo before 1.4.0 allows remote attackers to execute arbit... |
| CVE-2009-3697 | — | — | 2.6% | Oct 16, 2009 | SQL injection vulnerability in the PDF schema generator functionality in phpMyAdmin 2.11.x before 2.11.9.6 and 3.x befor... |
| CVE-2009-3696 | — | — | 2.6% | Oct 16, 2009 | Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.11.x before 2.11.9.6 and 3.x before 3.2.2.1 allows remote attac... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now