2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2629 | — | — | 66.9% | Sep 15, 2009 | Buffer underflow in src/http/ngx_http_parse.c in nginx 0.1.0 through 0.5.37, 0.6.x before 0.6.39, 0.7.x before 0.7.62, a... |
| CVE-2009-2201 | — | — | 0.3% | Sep 15, 2009 | The screensharing feature in the Admin application in Apple Xsan before 2.2 places a cleartext username and password in ... |
| CVE-2009-3199 | — | — | 2.2% | Sep 15, 2009 | Uebimiau Webmail 3.2.0-2.0 stores sensitive information under the web root with insufficient access control, which allow... |
| CVE-2009-3198 | — | — | 1.1% | Sep 15, 2009 | Cross-site scripting (XSS) vulnerability in search.php in JCE-Tech Affiliate Master Datafeed Parser Script 2.0 allows re... |
| CVE-2009-3197 | — | — | 1.1% | Sep 15, 2009 | Cross-site scripting (XSS) vulnerability in search.php in JCE-Tech PHP Calendars Script allows remote attackers to injec... |
| CVE-2009-3196 | — | — | 1.5% | Sep 15, 2009 | Cross-site scripting (XSS) vulnerability in index.php in JCE-Tech PHP Video Script allows remote attackers to inject arb... |
| CVE-2009-3195 | — | — | 1.5% | Sep 15, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in JCE-Tech Auction RSS Content Script 3.0 allow remote attackers to... |
| CVE-2009-3194 | — | — | 1.5% | Sep 15, 2009 | Cross-site scripting (XSS) vulnerability in index.php in JCE-Tech SearchFeed Script allows remote attackers to inject ar... |
| CVE-2009-3193 | — | — | 0.9% | Sep 15, 2009 | SQL injection vulnerability in the DigiFolio (com_digifolio) component 1.52 for Joomla! allows remote attackers to execu... |
| CVE-2009-3192 | — | — | 0.9% | Sep 15, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in LinkorCMS 1.2 and earlier allow remote attackers to ... |
| CVE-2009-3191 | — | — | 1.2% | Sep 15, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in PAD Site Scripts 3.6 allow remote attackers to inject arbitrary w... |
| CVE-2009-3190 | — | — | 0.9% | Sep 15, 2009 | Multiple SQL injection vulnerabilities in PAD Site Scripts 3.6 allow remote attackers to execute arbitrary SQL commands ... |
| CVE-2009-3189 | — | — | 1.5% | Sep 15, 2009 | Cross-site scripting (XSS) vulnerability in search.php in DigiOz Guestbook 1.7.2 allows remote attackers to inject arbit... |
| CVE-2009-3188 | — | — | 6.1% | Sep 15, 2009 | PHP remote file inclusion vulnerability in save.php in phpSANE 0.5.0 allows remote attackers to execute arbitrary PHP co... |
| CVE-2009-3187 | — | — | 1.5% | Sep 15, 2009 | Cross-site scripting (XSS) vulnerability in gamelist.php in Stand Alone Arcade 1.1 allows remote attackers to inject arb... |
| CVE-2009-3186 | — | — | 1.5% | Sep 15, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in VideoGirls BiZ allow remote attackers to inject arbitrary web scr... |
| CVE-2009-3185 | — | — | 1.0% | Sep 15, 2009 | SQL injection vulnerability in plugin.php in the Crazy Star plugin 2.0 for Discuz! allows remote authenticated users to ... |
| CVE-2009-3184 | — | — | 1.1% | Sep 15, 2009 | Multiple SQL injection vulnerabilities in index.php in Pirates of The Caribbean in the E-Gold Game Series allow remote a... |
| CVE-2009-3183 | — | — | 0.4% | Sep 14, 2009 | Heap-based buffer overflow in w in Sun Solaris 8 through 10, and OpenSolaris before snv_124, allows local users to gain ... |
| CVE-2009-2947 | — | — | 1.9% | Sep 14, 2009 | Cross-site scripting (XSS) vulnerability in Xapian Omega before 1.0.16 allows remote attackers to inject arbitrary web s... |
| CVE-2009-2814 | — | — | 1.9% | Sep 14, 2009 | Cross-site scripting (XSS) vulnerability in the Wiki Server in Apple Mac OS X 10.5.8 allows remote attackers to inject a... |
| CVE-2009-2813 | — | — | 2.7% | Sep 14, 2009 | Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in ... |
| CVE-2009-2812 | — | — | 2.2% | Sep 14, 2009 | Launch Services in Apple Mac OS X 10.5.8 does not properly recognize an unsafe Uniform Type Identifier (UTI) in an expor... |
| CVE-2009-2811 | — | — | 3.3% | Sep 14, 2009 | Incomplete blacklist vulnerability in Launch Services in Apple Mac OS X 10.5.8 allows user-assisted remote attackers to ... |
| CVE-2009-2809 | — | — | 3.2% | Sep 14, 2009 | ImageIO in Apple Mac OS X 10.4.11 and 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of serv... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now