2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-3366 | — | — | 2.7% | Sep 24, 2009 | Directory traversal vulnerability in navigation.php in An image gallery 1.0 allows remote attackers to list arbitrary di... |
| CVE-2009-3365 | — | — | 2.1% | Sep 24, 2009 | PHP remote file inclusion vulnerability in add-ons/modules/sysmanager/plugins/install.plugin.php in Aurora CMS 1.0.2 all... |
| CVE-2009-3364 | — | — | 5.4% | Sep 24, 2009 | Stack-based buffer overflow in FTPShell Client 4.1 RC2 allows remote FTP servers to execute arbitrary code via a long re... |
| CVE-2009-3363 | — | — | 1.1% | Sep 24, 2009 | Cross-site scripting (XSS) vulnerability in the BUEditor module 5.x before 5.x-1.2 and 6.x before 6.x-1.4, a module for ... |
| CVE-2009-3362 | — | — | 3.0% | Sep 24, 2009 | PHP remote file inclusion vulnerability in printnews.php3 in SZNews 2.7 allows remote attackers to execute arbitrary PHP... |
| CVE-2009-3361 | — | — | 0.9% | Sep 24, 2009 | SQL injection vulnerability in index.php in PHP-IPNMonitor allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2009-3360 | — | — | 1.8% | Sep 24, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Datemill 1.0 allow remote attackers to inject arbitrary web scrip... |
| CVE-2009-3359 | — | — | 1.6% | Sep 24, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Match Agency BiZ 1.0 allow remote attackers to inject arbitrary w... |
| CVE-2009-3358 | — | — | 0.9% | Sep 24, 2009 | SQL injection vulnerability in profile.php in Tourism Scripts Adult Portal escort listing allows remote attackers to exe... |
| CVE-2009-3357 | — | — | 1.0% | Sep 24, 2009 | Multiple SQL injection vulnerabilities in the Hotel Booking Reservation System (aka HBS or com_hbssearch) component for ... |
| CVE-2009-3356 | — | — | 1.0% | Sep 24, 2009 | SQL injection vulnerability in index.php in Image voting 1.0 allows remote attackers to execute arbitrary SQL commands v... |
| CVE-2009-3355 | — | — | 1.5% | Sep 24, 2009 | Cross-site scripting (XSS) vulnerability in profile.php in Datetopia Buy Dating Site 1.0 allows remote attackers to inje... |
| CVE-2009-3354 | — | — | 1.2% | Sep 24, 2009 | Multiple unspecified vulnerabilities in the Rest API module for Drupal have unknown impact and attack vectors. |
| CVE-2009-3353 | — | — | 1.3% | Sep 24, 2009 | Multiple unspecified vulnerabilities in the Node2Node module for Drupal have unknown impact and attack vectors. |
| CVE-2009-3352 | — | — | 2.0% | Sep 24, 2009 | Multiple unspecified vulnerabilities in the quota_by_role (Quota by role) module for Drupal have unknown impact and atta... |
| CVE-2009-3351 | — | — | 1.3% | Sep 24, 2009 | Multiple unspecified vulnerabilities in the Node Browser module for Drupal have unknown impact and attack vectors. |
| CVE-2009-3350 | — | — | 1.2% | Sep 24, 2009 | Multiple unspecified vulnerabilities in the Subdomain Manager module for Drupal have unknown impact and attack vectors. |
| CVE-2009-3349 | — | — | 1.8% | Sep 24, 2009 | SQL injection vulnerability in Datavore Gyro 5.0 allows remote attackers to execute arbitrary SQL commands via the cid p... |
| CVE-2009-3348 | — | — | 1.2% | Sep 24, 2009 | Cross-site scripting (XSS) vulnerability in Datavore Gyro 5.0 allows remote attackers to inject arbitrary web script or ... |
| CVE-2009-3347 | — | — | 4.2% | Sep 24, 2009 | Buffer overflow on the D-Link DIR-400 wireless router allows remote attackers to execute arbitrary code via unspecified ... |
| CVE-2009-3346 | — | — | 3.9% | Sep 24, 2009 | Unspecified vulnerability in SAP Crystal Reports Server 2008 allows remote attackers to execute arbitrary code via unkno... |
| CVE-2009-3345 | — | — | 1.6% | Sep 24, 2009 | Heap-based buffer overflow in SAP Crystal Reports Server 2008 has unknown impact and attack vectors, as demonstrated by ... |
| CVE-2009-3344 | — | — | 1.6% | Sep 24, 2009 | Unspecified vulnerability in SAP Crystal Reports Server 2008 on Windows XP allows attackers to cause a denial of service... |
| CVE-2009-3343 | — | — | 0.9% | Sep 24, 2009 | SQL injection vulnerability in details.asp in HotWeb Rentals allows remote attackers to execute arbitrary SQL commands v... |
| CVE-2009-3342 | — | — | 1.0% | Sep 24, 2009 | SQL injection vulnerability in frontend/assets/ajax/checkusername.php in the AlphaUserPoints (com_alphauserpoints) compo... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now