2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2684 | — | — | 2.2% | Oct 13, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Jetdirect and the Embedded Web Server (EWS) on certain HP LaserJe... |
| CVE-2009-3670 | — | — | 5.8% | Oct 11, 2009 | Stack-based buffer overflow in KSP Sound Player 2009 R2 and R2.1 allows remote attackers to execute arbitrary code via a... |
| CVE-2009-3669 | — | — | 0.9% | Oct 11, 2009 | SQL injection vulnerability in the foobla Suggestions (com_foobla_suggestions) component 1.5.11 for Joomla! allows remot... |
| CVE-2009-3668 | — | — | 0.9% | Oct 11, 2009 | Cross-site scripting (XSS) vulnerability in ardguest.php in Ardguest 1.8 allows remote attackers to inject arbitrary web... |
| CVE-2009-3667 | — | — | 0.9% | Oct 11, 2009 | SQL injection vulnerability in admin/index.php in AdsDX 3.05 allows remote attackers to execute arbitrary SQL commands v... |
| CVE-2009-3666 | — | — | 3.0% | Oct 11, 2009 | Cross-site scripting (XSS) vulnerability in index.php in Nullam Blog 0.1.2 allows remote attackers to inject arbitrary w... |
| CVE-2009-3665 | — | — | 2.1% | Oct 11, 2009 | Multiple SQL injection vulnerabilities in index.php in Nullam Blog 0.1.2 allow remote attackers to execute arbitrary SQL... |
| CVE-2009-3664 | — | — | 6.0% | Oct 11, 2009 | Multiple directory traversal vulnerabilities in index.php in Nullam Blog 0.1.2 allow remote attackers to include or exec... |
| CVE-2009-3663 | — | — | 14.6% | Oct 11, 2009 | Format string vulnerability in the h_readrequest function in http.c in httpdx Web Server 1.4 allows remote attackers to ... |
| CVE-2009-3662 | — | — | 2.7% | Oct 11, 2009 | FileCopa FTP Server 5.01 allows remote attackers to cause a denial of service (server hang) via a large number of crafte... |
| CVE-2009-3661 | — | — | 0.9% | Oct 11, 2009 | Multiple SQL injection vulnerabilities in the DJ-Catalog (com_djcatalog) component for Joomla! allow remote attackers to... |
| CVE-2009-3660 | — | — | 1.9% | Oct 11, 2009 | PHP remote file inclusion vulnerability in libraries/database.php in Efront 3.5.4 and earlier, when register_globals is ... |
| CVE-2009-3659 | — | — | 0.9% | Oct 11, 2009 | SQL injection vulnerability in file/stats.php in BS Counter 2.5.3 allows remote attackers to execute arbitrary SQL comma... |
| CVE-2009-3658 | HIGH | 8.8 | 8.9% | Oct 9, 2009 | Use-after-free vulnerability in the Sb.SuperBuddy.1 ActiveX control (sb.dll) in America Online (AOL) 9.5.0.1 allows remo... |
| CVE-2009-3657 | — | — | 1.1% | Oct 9, 2009 | Session fixation vulnerability in Shared Sign-On 5.x and 6.x, a module for Drupal, allows remote attackers to hijack web... |
| CVE-2009-3656 | — | — | 0.6% | Oct 9, 2009 | Cross-site request forgery (CSRF) vulnerability in Shared Sign-On 5.x and 6.x, a module for Drupal, allows remote attack... |
| CVE-2009-3655 | — | — | 4.0% | Oct 9, 2009 | Rhino Software Serv-U 7.0.0.1 through 8.2.0.3 allows remote attackers to cause a denial of service (server crash) via un... |
| CVE-2009-3654 | — | — | 1.6% | Oct 9, 2009 | Unspecified vulnerability in Boost before 6.x-1.03, a module for Drupal, allows remote attackers to create new webroot d... |
| CVE-2009-3653 | — | — | 0.8% | Oct 9, 2009 | Cross-site scripting (XSS) vulnerability in the additional links interface in XML Sitemap 5.x-1.6, a module for Drupal, ... |
| CVE-2009-3652 | — | — | 1.0% | Oct 9, 2009 | Cross-site scripting (XSS) vulnerability in Organic Groups (OG) 5.x-7.x before 5.x-7.4, 5.x-8.x before 5.x-8.1, and 6.x-... |
| CVE-2009-3651 | — | — | 1.3% | Oct 9, 2009 | Cross-site scripting (XSS) vulnerability in the "Monitor browsers' feature in Browscap before 5.x-1.1 and 6.x-1.1, a mod... |
| CVE-2009-3650 | — | — | 1.0% | Oct 9, 2009 | Cross-site scripting (XSS) vulnerability in Dex 5.x-1.0 and earlier and 6.x-1.0-rc1 and earlier, a module for Drupal, al... |
| CVE-2009-3649 | — | — | 0.8% | Oct 9, 2009 | Cross-site scripting (XSS) vulnerability in forums/index.php in Power Bulletin Board (PBBoard) 2.0.2 and possibly earlie... |
| CVE-2009-3648 | — | — | 1.4% | Oct 9, 2009 | Cross-site scripting (XSS) vulnerability in Service Links 6.x-1.0, a module for Drupal, allows remote authenticated user... |
| CVE-2009-3647 | — | — | 1.2% | Oct 9, 2009 | Cross-site scripting (XSS) vulnerability in emaullinks.php in YABSoft Mega File Hosting Script (aka MFH or MFHS) 1.2 all... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now