2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-3572 | — | — | 0.3% | Oct 6, 2009 | OpenBSD 4.4, 4.5, and 4.6, when running on an i386 kernel, does not properly handle XMM exceptions, which allows local u... |
| CVE-2009-3571 | — | — | 1.3% | Oct 6, 2009 | Unspecified vulnerability in OpenOffice.org (OOo) has unknown impact and client-side attack vector, as demonstrated by a... |
| CVE-2009-3570 | — | — | 1.5% | Oct 6, 2009 | Unspecified vulnerability in OpenOffice.org (OOo) has unspecified impact and remote attack vectors, as demonstrated by a... |
| CVE-2009-3569 | — | — | 9.8% | Oct 6, 2009 | Stack-based buffer overflow in OpenOffice.org (OOo) allows remote attackers to execute arbitrary code via unspecified ve... |
| CVE-2009-3568 | — | — | 1.4% | Oct 6, 2009 | Comment RSS 5.x before 5.x-2.2 and 6.x before 6.x-2.2, a module for Drupal, does not properly enforce permissions when a... |
| CVE-2009-3567 | — | — | 1.1% | Oct 6, 2009 | Cross-site scripting (XSS) vulnerability in modules/tickets/functions_ticketsui.php in Kayako SupportSuite and eSupport ... |
| CVE-2009-3564 | — | — | 0.4% | Oct 6, 2009 | puppetmasterd in puppet 0.24.6 does not reset supplementary groups when it switches to a different user, which might all... |
| CVE-2009-3562 | — | — | 1.5% | Oct 5, 2009 | Cross-site scripting (XSS) vulnerability in Xerver HTTP Server 4.32 allows remote attackers to inject arbitrary web scri... |
| CVE-2009-3561 | — | — | 2.8% | Oct 5, 2009 | Directory traversal vulnerability in Xerver HTTP Server 4.32 allows remote attackers to read arbitrary files via a full ... |
| CVE-2009-3545 | — | — | 2.2% | Oct 5, 2009 | DataWizard Technologies FtpXQ FTP Server 3.0 allows remote authenticated users to cause a denial of service (crash) via ... |
| CVE-2009-3544 | — | — | 2.6% | Oct 5, 2009 | Xerver HTTP Server 4.32 allows remote attackers to obtain the source code for a web page via an HTTP request with the ad... |
| CVE-2009-3525 | — | — | 1.2% | Oct 5, 2009 | The pyGrub boot loader in Xen 3.0.3, 3.3.0, and Xen-3.3.1 does not support the password option in grub.conf for para-vir... |
| CVE-2009-2679 | — | — | 4.1% | Oct 5, 2009 | Unspecified vulnerability in bootpd in HP HP-UX B.11.11, B.11.23, and B.11.31 allows remote attackers to cause a denial ... |
| CVE-2009-3543 | — | — | 2.0% | Oct 2, 2009 | SQL injection vulnerability in _phenotype/admin/login.php in Phenotype CMS before 2.9 allows remote attackers to execute... |
| CVE-2009-3542 | — | — | 2.4% | Oct 2, 2009 | Directory traversal vulnerability in ls.php in LittleSite (aka LS or LittleSite.php) 0.1 allows remote attackers to incl... |
| CVE-2009-3541 | — | — | 2.1% | Oct 2, 2009 | PHP remote file inclusion vulnerability in CoupleDB.php in PHPGenealogy 2.0 allows remote attackers to execute arbitrary... |
| CVE-2009-3540 | — | — | 0.8% | Oct 2, 2009 | Cross-site scripting (XSS) vulnerability in listads.php in YourFreeWorld Ultra Classifieds Pro allows remote attackers t... |
| CVE-2009-3539 | — | — | 1.5% | Oct 2, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in YourFreeWorld Ultra Classifieds Pro allow remote attackers to inj... |
| CVE-2009-3538 | — | — | 1.6% | Oct 2, 2009 | Directory traversal vulnerability in thumb.php in Clear Content 1.1 allows remote attackers to read arbitrary files via ... |
| CVE-2009-3537 | — | — | 5.0% | Oct 2, 2009 | Multiple stack-based buffer overflows in EpicDJSoftware EpicDJ 1.3.9.1 allow remote attackers to cause a denial of servi... |
| CVE-2009-3536 | — | — | 5.9% | Oct 2, 2009 | Multiple stack-based buffer overflows in EpicDJSoftware EpicVJ 1.2.8.0 and 1.3.1.2 allow remote attackers to cause a den... |
| CVE-2009-3535 | — | — | 4.8% | Oct 2, 2009 | Directory traversal vulnerability in image.php in Clear Content 1.1 allows remote attackers to read arbitrary files via ... |
| CVE-2009-3534 | — | — | 4.1% | Oct 2, 2009 | Directory traversal vulnerability in index.php in LionWiki 3.0.3, when magic_quotes_gpc is disabled, allows remote attac... |
| CVE-2009-3533 | — | — | 1.7% | Oct 2, 2009 | SQL injection vulnerability in report.php in Meeting Room Booking System (MRBS) before 1.4.2 allows remote attackers to ... |
| CVE-2009-3532 | — | — | 1.9% | Oct 2, 2009 | Multiple SQL injection vulnerabilities in login.asp (aka the login screen) in LogRover 2.3 and 2.3.3 on Windows allow re... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now