2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-3505 | — | — | 1.2% | Sep 30, 2009 | SQL injection vulnerability in view_news.php in Vastal I-Tech MMORPG Zone allows remote attackers to execute arbitrary S... |
| CVE-2009-3504 | — | — | 1.3% | Sep 30, 2009 | SQL injection vulnerability in offers_buy.php in Alibaba Clone 3.0 allows remote attackers to execute arbitrary SQL comm... |
| CVE-2009-3503 | — | — | 1.0% | Sep 30, 2009 | Multiple SQL injection vulnerabilities in search.aspx in BPowerHouse BPHolidayLettings 1.0 allow remote attackers to exe... |
| CVE-2009-3502 | — | — | 1.0% | Sep 30, 2009 | SQL injection vulnerability in music.php in BPowerHouse BPMusic 1.0 allows remote attackers to execute arbitrary SQL com... |
| CVE-2009-3501 | — | — | 1.2% | Sep 30, 2009 | SQL injection vulnerability in students.php in BPowerHouse BPStudents 1.0 allows remote attackers to execute arbitrary S... |
| CVE-2009-3500 | — | — | 1.0% | Sep 30, 2009 | Multiple SQL injection vulnerabilities in BPowerHouse BPGames 1.0 allow remote attackers to execute arbitrary SQL comman... |
| CVE-2009-3499 | — | — | 1.0% | Sep 30, 2009 | SQL injection vulnerability in employee.aspx in BPowerHouse BPLawyerCaseDocuments 1.0 allows remote attackers to execute... |
| CVE-2009-3498 | — | — | 1.0% | Sep 30, 2009 | SQL injection vulnerability in php/update_article_hits.php in HBcms 1.7 allows remote attackers to execute arbitrary SQL... |
| CVE-2009-3497 | — | — | 1.1% | Sep 30, 2009 | SQL injection vulnerability in view_listing.php in Vastal I-Tech Agent Zone (aka The Real Estate Script) allows remote a... |
| CVE-2009-3496 | — | — | 1.5% | Sep 30, 2009 | Cross-site scripting (XSS) vulnerability in view_mag.php in Vastal I-Tech DVD Zone allows remote attackers to inject arb... |
| CVE-2009-3495 | — | — | 1.0% | Sep 30, 2009 | SQL injection vulnerability in view_mag.php in Vastal I-Tech DVD Zone allows remote attackers to execute arbitrary SQL c... |
| CVE-2009-3494 | — | — | 0.9% | Sep 30, 2009 | Multiple SQL injection vulnerabilities in index.php in T-HTB Manager 0.5, when magic_quotes_gpc is disabled, allow remot... |
| CVE-2009-3493 | — | — | 1.6% | Sep 30, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Zenas PaoBacheca Guestbook 2.1 allow remote attackers to inject a... |
| CVE-2009-3492 | — | — | 2.1% | Sep 30, 2009 | Multiple PHP remote file inclusion vulnerabilities in Loggix Project 9.4.5 and earlier allow remote attackers to execute... |
| CVE-2009-3491 | — | — | 1.0% | Sep 30, 2009 | SQL injection vulnerability in the Kinfusion SportFusion (com_sportfusion) component 0.2.2 through 0.2.3 for Joomla! all... |
| CVE-2009-3490 | — | — | 3.5% | Sep 30, 2009 | GNU Wget before 1.12 does not properly handle a '\0' character in a domain name in the Common Name field of an X.509 cer... |
| CVE-2009-3489 | HIGH | 7.8 | 2.0% | Sep 30, 2009 | Adobe Photoshop Elements 8.0 installs the Adobe Active File Monitor V8 service with an insecure security descriptor, whi... |
| CVE-2009-3488 | — | — | 0.8% | Sep 30, 2009 | Cross-site scripting (XSS) vulnerability in the Bibliography (aka Biblio) module 6.x-1.6 for Drupal allows remote authen... |
| CVE-2009-3487 | — | — | 1.2% | Sep 30, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the J-Web interface in Juniper JUNOS 8.5R1.14 allow remote authen... |
| CVE-2009-3486 | — | — | 1.2% | Sep 30, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the J-Web interface in Juniper JUNOS 8.5R1.14 allow remote authen... |
| CVE-2009-3485 | — | — | 1.5% | Sep 30, 2009 | Cross-site scripting (XSS) vulnerability in the J-Web interface in Juniper JUNOS 8.5R1.14 and 9.0R1.1 allows remote atta... |
| CVE-2009-3484 | — | — | 5.6% | Sep 30, 2009 | Stack-based buffer overflow in Core FTP 2.1 build 1612 allows user-assisted remote attackers to execute arbitrary code v... |
| CVE-2009-3483 | — | — | 4.7% | Sep 30, 2009 | Heap-based buffer overflow in the Create New Site feature in GlobalSCAPE CuteFTP Professional, Home, and Lite 8.3.3 and ... |
| CVE-2009-3482 | HIGH | 7.8 | 0.3% | Sep 30, 2009 | TrustPort Antivirus before 2.8.0.2266 and PC Security before 2.0.0.1291 use weak permissions (Everyone: Full Control) fo... |
| CVE-2009-3481 | — | — | 1.2% | Sep 30, 2009 | A certain interface in the iCRM Basic (com_icrmbasic) component 1.4.2.31 for Joomla! does not require administrative aut... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now