2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-3596 | — | — | 2.3% | Oct 8, 2009 | JoxTechnology Ajox Poll does not properly restrict access to admin/managepoll.php, which allows remote attackers to bypa... |
| CVE-2009-3595 | — | — | 1.0% | Oct 8, 2009 | SQL injection vulnerability in results.php in VS PANEL 7.5.5 allows remote attackers to execute arbitrary SQL commands v... |
| CVE-2009-3594 | — | — | 1.0% | Oct 8, 2009 | Cross-site scripting (XSS) vulnerability in bpost.php in BLOB Blog System before 1.2 allows remote attackers to inject a... |
| CVE-2009-3593 | — | — | 1.5% | Oct 8, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Freelancers 1.0 allow remote attackers to inject arbitrary web sc... |
| CVE-2009-3592 | — | — | 1.5% | Oct 8, 2009 | Cross-site scripting (XSS) vulnerability in customer/home.php in Qualiteam X-Cart allows remote attackers to inject arbi... |
| CVE-2009-3591 | — | — | 52.8% | Oct 8, 2009 | Dopewars 1.5.12 allows remote attackers to cause a denial of service (segmentation fault) via a REQUESTJET message with ... |
| CVE-2009-3590 | — | — | 1.0% | Oct 8, 2009 | SQL injection vulnerability in showcat.php in VS PANEL 7.3.6 allows remote attackers to execute arbitrary SQL commands v... |
| CVE-2009-3589 | — | — | 0.3% | Oct 8, 2009 | incron 0.5.5 does not initialize supplementary groups when running a process from a user's incrontabs, which causes the ... |
| CVE-2009-2948 | — | — | 0.5% | Oct 7, 2009 | mount.cifs in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8 and 3.4 before 3.4.2, when mount.cifs is inst... |
| CVE-2009-2906 | — | — | 4.2% | Oct 7, 2009 | smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 before 3.4.2 allows remote authenticated u... |
| CVE-2009-3579 | — | — | 1.1% | Oct 7, 2009 | Cross-site scripting (XSS) vulnerability in the CookieDump.java sample application in Mort Bay Jetty 6.1.19 and 6.1.20 a... |
| CVE-2009-3575 | — | — | 5.8% | Oct 7, 2009 | Buffer overflow in DHTRoutingTableDeserializer.cc in aria2 0.15.3, 1.2.0, and other versions allows remote attackers to ... |
| CVE-2009-3527 | — | — | 0.6% | Oct 6, 2009 | Race condition in the Pipe (IPC) close function in FreeBSD 6.3 and 6.4 allows local users to cause a denial of service (... |
| CVE-2009-3574 | — | — | 4.8% | Oct 6, 2009 | Tuniac 090517c allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a lon... |
| CVE-2009-3573 | — | — | 5.7% | Oct 6, 2009 | Multiple insecure method vulnerabilities in the PDIControl.PDI.1 ActiveX control (PDIControl.dll) 2.2.3160.0 in EMC Capt... |
| CVE-2009-3572 | — | — | 0.3% | Oct 6, 2009 | OpenBSD 4.4, 4.5, and 4.6, when running on an i386 kernel, does not properly handle XMM exceptions, which allows local u... |
| CVE-2009-3571 | — | — | 1.3% | Oct 6, 2009 | Unspecified vulnerability in OpenOffice.org (OOo) has unknown impact and client-side attack vector, as demonstrated by a... |
| CVE-2009-3570 | — | — | 1.5% | Oct 6, 2009 | Unspecified vulnerability in OpenOffice.org (OOo) has unspecified impact and remote attack vectors, as demonstrated by a... |
| CVE-2009-3569 | — | — | 9.8% | Oct 6, 2009 | Stack-based buffer overflow in OpenOffice.org (OOo) allows remote attackers to execute arbitrary code via unspecified ve... |
| CVE-2009-3568 | — | — | 1.4% | Oct 6, 2009 | Comment RSS 5.x before 5.x-2.2 and 6.x before 6.x-2.2, a module for Drupal, does not properly enforce permissions when a... |
| CVE-2009-3567 | — | — | 1.1% | Oct 6, 2009 | Cross-site scripting (XSS) vulnerability in modules/tickets/functions_ticketsui.php in Kayako SupportSuite and eSupport ... |
| CVE-2009-3564 | — | — | 0.4% | Oct 6, 2009 | puppetmasterd in puppet 0.24.6 does not reset supplementary groups when it switches to a different user, which might all... |
| CVE-2009-3562 | — | — | 1.5% | Oct 5, 2009 | Cross-site scripting (XSS) vulnerability in Xerver HTTP Server 4.32 allows remote attackers to inject arbitrary web scri... |
| CVE-2009-3561 | — | — | 2.8% | Oct 5, 2009 | Directory traversal vulnerability in Xerver HTTP Server 4.32 allows remote attackers to read arbitrary files via a full ... |
| CVE-2009-3545 | — | — | 2.2% | Oct 5, 2009 | DataWizard Technologies FtpXQ FTP Server 3.0 allows remote authenticated users to cause a denial of service (crash) via ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now