2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-3076 | — | — | 6.7% | Sep 10, 2009 | Mozilla Firefox before 3.0.14 does not properly implement certain dialogs associated with the (1) pkcs11.addmodule and (... |
| CVE-2009-3075 | — | — | 5.3% | Sep 10, 2009 | Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox before 3.0.14 and 3.5.x before 3.5.2, T... |
| CVE-2009-3074 | — | — | 5.5% | Sep 10, 2009 | Unspecified vulnerability in the JavaScript engine in Mozilla Firefox before 3.0.14 allows remote attackers to cause a d... |
| CVE-2009-3073 | — | — | 4.6% | Sep 10, 2009 | Unspecified vulnerability in the JavaScript engine in Mozilla Firefox 3.5.x before 3.5.3 allows remote attackers to caus... |
| CVE-2009-3072 | — | — | 5.3% | Sep 10, 2009 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.14 and 3.5.x before 3.5.3, Thun... |
| CVE-2009-3071 | — | — | 5.5% | Sep 10, 2009 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.14, and 3.5.x before 3.5.2, all... |
| CVE-2009-3070 | — | — | 5.5% | Sep 10, 2009 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.14 allow remote attackers to ca... |
| CVE-2009-3069 | — | — | 3.7% | Sep 10, 2009 | Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.3 allows remote attackers to cause a... |
| CVE-2009-2815 | — | — | 2.5% | Sep 10, 2009 | The Telephony component in Apple iPhone OS before 3.1 does not properly handle SMS arrival notifications, which allows r... |
| CVE-2009-2799 | — | — | 5.7% | Sep 10, 2009 | Heap-based buffer overflow in Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a ... |
| CVE-2009-2798 | — | — | 5.7% | Sep 10, 2009 | Heap-based buffer overflow in Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a ... |
| CVE-2009-2797 | — | — | 3.6% | Sep 10, 2009 | The WebKit component in Safari in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod touch, does not remove... |
| CVE-2009-2796 | — | — | 0.4% | Sep 10, 2009 | The UIKit component in Apple iPhone OS 3.0, and iPhone OS 3.0.1 for iPod touch, allows physically proximate attackers to... |
| CVE-2009-2795 | — | — | 0.4% | Sep 10, 2009 | Heap-based buffer overflow in the Recovery Mode component in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for ... |
| CVE-2009-2794 | — | — | 0.3% | Sep 10, 2009 | The Exchange Support component in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod touch, does not proper... |
| CVE-2009-2207 | — | — | 0.3% | Sep 10, 2009 | The MobileMail component in Apple iPhone OS 3.0 and 3.0.1, and iPhone OS 3.0 for iPod touch, lists deleted e-mail messag... |
| CVE-2009-2206 | — | — | 4.6% | Sep 10, 2009 | Multiple heap-based buffer overflows in the AudioCodecs library in the CoreAudio component in Apple iPhone OS before 3.1... |
| CVE-2009-2203 | — | — | 5.7% | Sep 10, 2009 | Buffer overflow in Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a denial of s... |
| CVE-2009-2202 | — | — | 4.9% | Sep 10, 2009 | Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr... |
| CVE-2009-3162 | — | — | 1.3% | Sep 10, 2009 | Cross-site scripting (XSS) vulnerability in Multi Website 1.5 allows remote attackers to inject arbitrary web script or ... |
| CVE-2009-3161 | — | — | 1.8% | Sep 10, 2009 | The server in IBM WebSphere MQ 7.0.0.1, 7.0.0.2, and 7.0.1.0 allows attackers to cause a denial of service (trap) or pos... |
| CVE-2009-3160 | — | — | 1.5% | Sep 10, 2009 | IBM WebSphere MQ 6.x through 6.0.2.7, 7.0.0.0, 7.0.0.1, 7.0.0.2, and 7.0.1.0, when read ahead or asynchronous message co... |
| CVE-2009-3159 | — | — | 2.5% | Sep 10, 2009 | Unspecified vulnerability in the rriDecompress function in IBM WebSphere MQ 7.0.0.0, 7.0.0.1, and 7.0.0.2 allows remote ... |
| CVE-2009-3158 | — | — | 2.7% | Sep 10, 2009 | admin/files.php in simplePHPWeb 0.2 does not require authentication, which allows remote attackers to perform unspecifie... |
| CVE-2009-3157 | — | — | 1.0% | Sep 10, 2009 | Cross-site scripting (XSS) vulnerability in the Calendar module 6.x before 6.x-2.2 for Drupal allows remote authenticate... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now