2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-3531 | — | — | 1.0% | Oct 2, 2009 | SQL injection vulnerability in vnews.php in Universe CMS 1.0.6 allows remote attackers to execute arbitrary SQL commands... |
| CVE-2009-3530 | — | — | 1.5% | Oct 2, 2009 | Cross-site scripting (XSS) vulnerability in storefront.php in RadScripts RadBids Gold 4 allows remote attackers to injec... |
| CVE-2009-3529 | — | — | 0.9% | Oct 2, 2009 | SQL injection vulnerability in index.php in RadScripts RadBids Gold 4 allows remote attackers to execute arbitrary SQL c... |
| CVE-2009-3528 | — | — | 0.9% | Oct 2, 2009 | SQL injection vulnerability in Profile.php in MyMsg 1.0.3 allows remote authenticated users to execute arbitrary SQL com... |
| CVE-2009-3524 | — | — | 0.4% | Oct 1, 2009 | Unspecified vulnerability in ashWsFtr.dll in avast! Home and Professional for Windows before 4.8.1356 has unknown impact... |
| CVE-2009-3523 | — | — | 0.8% | Oct 1, 2009 | aavmKer4.sys in avast! Home and Professional for Windows before 4.8.1356 does not properly validate input to IOCTLs (1) ... |
| CVE-2009-3522 | — | — | 0.9% | Oct 1, 2009 | Stack-based buffer overflow in aswMon2.sys in avast! Home and Professional for Windows 4.8.1351, and possibly other vers... |
| CVE-2009-3521 | — | — | 1.0% | Oct 1, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the Visualization Engine (VE) in IBM Tivoli Composite Application... |
| CVE-2009-3520 | HIGH | 8.8 | 0.6% | Oct 1, 2009 | Cross-site request forgery (CSRF) vulnerability in the Your_account module in CMSphp 0.21 allows remote attackers to hij... |
| CVE-2009-3519 | — | — | 0.4% | Oct 1, 2009 | Multiple memory leaks in the IP module in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_109, allow ... |
| CVE-2009-3518 | — | — | 5.5% | Oct 1, 2009 | Argument injection vulnerability in the iim: URI handler in IBMIM.exe in IBM Installation Manager 1.3.2 and earlier, as ... |
| CVE-2009-3517 | — | — | 4.4% | Oct 1, 2009 | nfs.ext in IBM AIX 5.3.x through 5.3.9 and 6.1.0 through 6.1.2 does not properly use the nfs_portmon setting, which allo... |
| CVE-2009-3516 | — | — | 0.4% | Oct 1, 2009 | gssd in IBM AIX 5.3.x through 5.3.9 and 6.1.0 through 6.1.2 does not properly handle the NFSv4 Kerberos credential cache... |
| CVE-2009-2904 | — | — | 0.3% | Oct 1, 2009 | A certain Red Hat modification to the ChrootDirectory feature in OpenSSH 4.8, as used in sshd in OpenSSH 4.3 in Red Hat ... |
| CVE-2009-0209 | — | — | 0.7% | Oct 1, 2009 | PI Server in OSIsoft PI System before 3.4.380.x does not properly use encryption in the default authentication process, ... |
| CVE-2009-3515 | — | — | 2.0% | Oct 1, 2009 | Directory traversal vulnerability in dnet_admin/index.php in d.net CMS allows remote authenticated administrators to inc... |
| CVE-2009-3514 | — | — | 0.8% | Oct 1, 2009 | Multiple SQL injection vulnerabilities in d.net CMS allow remote attackers to execute arbitrary SQL commands via (1) the... |
| CVE-2009-3513 | — | — | 1.5% | Oct 1, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Pilot Group (PG) eTraining allow remote attackers to inject arbit... |
| CVE-2009-3512 | — | — | 1.8% | Oct 1, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in MyWeight 1.0 allow remote attackers to inject arbitrary web scrip... |
| CVE-2009-3511 | — | — | 2.1% | Oct 1, 2009 | Multiple PHP remote file inclusion vulnerabilities in justVisual 1.2 allow remote attackers to execute arbitrary PHP cod... |
| CVE-2009-3510 | — | — | 0.9% | Oct 1, 2009 | SQL injection vulnerability in viewListing.php in linkSpheric 0.74 Beta 6 allows remote attackers to execute arbitrary S... |
| CVE-2009-3509 | — | — | 1.5% | Oct 1, 2009 | Cross-site scripting (XSS) vulnerability in admin/admin_index.php in CJ Dynamic Poll PRO 2.0 allows remote attackers to ... |
| CVE-2009-3508 | — | — | 1.6% | Oct 1, 2009 | Multiple directory traversal vulnerabilities in MUJE CMS 1.0.4.34 allow remote attackers to include and execute arbitrar... |
| CVE-2009-3507 | — | — | 2.3% | Oct 1, 2009 | Directory traversal vulnerability in modules.php in CMSphp 0.21 allows remote attackers to include and execute arbitrary... |
| CVE-2009-3506 | — | — | 1.3% | Oct 1, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in CMSphp 0.21 allow remote attackers to inject arbitrary web script... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now