2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-3544 | — | — | 2.6% | Oct 5, 2009 | Xerver HTTP Server 4.32 allows remote attackers to obtain the source code for a web page via an HTTP request with the ad... |
| CVE-2009-3525 | — | — | 1.2% | Oct 5, 2009 | The pyGrub boot loader in Xen 3.0.3, 3.3.0, and Xen-3.3.1 does not support the password option in grub.conf for para-vir... |
| CVE-2009-2679 | — | — | 4.1% | Oct 5, 2009 | Unspecified vulnerability in bootpd in HP HP-UX B.11.11, B.11.23, and B.11.31 allows remote attackers to cause a denial ... |
| CVE-2009-3543 | — | — | 2.0% | Oct 2, 2009 | SQL injection vulnerability in _phenotype/admin/login.php in Phenotype CMS before 2.9 allows remote attackers to execute... |
| CVE-2009-3542 | — | — | 2.4% | Oct 2, 2009 | Directory traversal vulnerability in ls.php in LittleSite (aka LS or LittleSite.php) 0.1 allows remote attackers to incl... |
| CVE-2009-3541 | — | — | 2.1% | Oct 2, 2009 | PHP remote file inclusion vulnerability in CoupleDB.php in PHPGenealogy 2.0 allows remote attackers to execute arbitrary... |
| CVE-2009-3540 | — | — | 0.8% | Oct 2, 2009 | Cross-site scripting (XSS) vulnerability in listads.php in YourFreeWorld Ultra Classifieds Pro allows remote attackers t... |
| CVE-2009-3539 | — | — | 1.5% | Oct 2, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in YourFreeWorld Ultra Classifieds Pro allow remote attackers to inj... |
| CVE-2009-3538 | — | — | 1.6% | Oct 2, 2009 | Directory traversal vulnerability in thumb.php in Clear Content 1.1 allows remote attackers to read arbitrary files via ... |
| CVE-2009-3537 | — | — | 5.0% | Oct 2, 2009 | Multiple stack-based buffer overflows in EpicDJSoftware EpicDJ 1.3.9.1 allow remote attackers to cause a denial of servi... |
| CVE-2009-3536 | — | — | 5.9% | Oct 2, 2009 | Multiple stack-based buffer overflows in EpicDJSoftware EpicVJ 1.2.8.0 and 1.3.1.2 allow remote attackers to cause a den... |
| CVE-2009-3535 | — | — | 4.8% | Oct 2, 2009 | Directory traversal vulnerability in image.php in Clear Content 1.1 allows remote attackers to read arbitrary files via ... |
| CVE-2009-3534 | — | — | 4.1% | Oct 2, 2009 | Directory traversal vulnerability in index.php in LionWiki 3.0.3, when magic_quotes_gpc is disabled, allows remote attac... |
| CVE-2009-3533 | — | — | 1.7% | Oct 2, 2009 | SQL injection vulnerability in report.php in Meeting Room Booking System (MRBS) before 1.4.2 allows remote attackers to ... |
| CVE-2009-3532 | — | — | 1.9% | Oct 2, 2009 | Multiple SQL injection vulnerabilities in login.asp (aka the login screen) in LogRover 2.3 and 2.3.3 on Windows allow re... |
| CVE-2009-3531 | — | — | 1.0% | Oct 2, 2009 | SQL injection vulnerability in vnews.php in Universe CMS 1.0.6 allows remote attackers to execute arbitrary SQL commands... |
| CVE-2009-3530 | — | — | 1.5% | Oct 2, 2009 | Cross-site scripting (XSS) vulnerability in storefront.php in RadScripts RadBids Gold 4 allows remote attackers to injec... |
| CVE-2009-3529 | — | — | 0.9% | Oct 2, 2009 | SQL injection vulnerability in index.php in RadScripts RadBids Gold 4 allows remote attackers to execute arbitrary SQL c... |
| CVE-2009-3528 | — | — | 0.9% | Oct 2, 2009 | SQL injection vulnerability in Profile.php in MyMsg 1.0.3 allows remote authenticated users to execute arbitrary SQL com... |
| CVE-2009-3524 | — | — | 0.4% | Oct 1, 2009 | Unspecified vulnerability in ashWsFtr.dll in avast! Home and Professional for Windows before 4.8.1356 has unknown impact... |
| CVE-2009-3523 | — | — | 0.8% | Oct 1, 2009 | aavmKer4.sys in avast! Home and Professional for Windows before 4.8.1356 does not properly validate input to IOCTLs (1) ... |
| CVE-2009-3522 | — | — | 0.9% | Oct 1, 2009 | Stack-based buffer overflow in aswMon2.sys in avast! Home and Professional for Windows 4.8.1351, and possibly other vers... |
| CVE-2009-3521 | — | — | 1.0% | Oct 1, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the Visualization Engine (VE) in IBM Tivoli Composite Application... |
| CVE-2009-3519 | — | — | 0.4% | Oct 1, 2009 | Multiple memory leaks in the IP module in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_109, allow ... |
| CVE-2009-3518 | — | — | 5.5% | Oct 1, 2009 | Argument injection vulnerability in the iim: URI handler in IBMIM.exe in IBM Installation Manager 1.3.2 and earlier, as ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now