2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-3193 | — | — | 0.9% | Sep 15, 2009 | SQL injection vulnerability in the DigiFolio (com_digifolio) component 1.52 for Joomla! allows remote attackers to execu... |
| CVE-2009-3192 | — | — | 0.9% | Sep 15, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in LinkorCMS 1.2 and earlier allow remote attackers to ... |
| CVE-2009-3191 | — | — | 1.2% | Sep 15, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in PAD Site Scripts 3.6 allow remote attackers to inject arbitrary w... |
| CVE-2009-3190 | — | — | 0.9% | Sep 15, 2009 | Multiple SQL injection vulnerabilities in PAD Site Scripts 3.6 allow remote attackers to execute arbitrary SQL commands ... |
| CVE-2009-3189 | — | — | 1.5% | Sep 15, 2009 | Cross-site scripting (XSS) vulnerability in search.php in DigiOz Guestbook 1.7.2 allows remote attackers to inject arbit... |
| CVE-2009-3188 | — | — | 6.1% | Sep 15, 2009 | PHP remote file inclusion vulnerability in save.php in phpSANE 0.5.0 allows remote attackers to execute arbitrary PHP co... |
| CVE-2009-3187 | — | — | 1.5% | Sep 15, 2009 | Cross-site scripting (XSS) vulnerability in gamelist.php in Stand Alone Arcade 1.1 allows remote attackers to inject arb... |
| CVE-2009-3186 | — | — | 1.5% | Sep 15, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in VideoGirls BiZ allow remote attackers to inject arbitrary web scr... |
| CVE-2009-3185 | — | — | 1.0% | Sep 15, 2009 | SQL injection vulnerability in plugin.php in the Crazy Star plugin 2.0 for Discuz! allows remote authenticated users to ... |
| CVE-2009-3184 | — | — | 1.1% | Sep 15, 2009 | Multiple SQL injection vulnerabilities in index.php in Pirates of The Caribbean in the E-Gold Game Series allow remote a... |
| CVE-2009-3183 | — | — | 0.4% | Sep 14, 2009 | Heap-based buffer overflow in w in Sun Solaris 8 through 10, and OpenSolaris before snv_124, allows local users to gain ... |
| CVE-2009-2947 | — | — | 1.9% | Sep 14, 2009 | Cross-site scripting (XSS) vulnerability in Xapian Omega before 1.0.16 allows remote attackers to inject arbitrary web s... |
| CVE-2009-2814 | — | — | 1.9% | Sep 14, 2009 | Cross-site scripting (XSS) vulnerability in the Wiki Server in Apple Mac OS X 10.5.8 allows remote attackers to inject a... |
| CVE-2009-2813 | — | — | 2.7% | Sep 14, 2009 | Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in ... |
| CVE-2009-2812 | — | — | 2.2% | Sep 14, 2009 | Launch Services in Apple Mac OS X 10.5.8 does not properly recognize an unsafe Uniform Type Identifier (UTI) in an expor... |
| CVE-2009-2811 | — | — | 3.3% | Sep 14, 2009 | Incomplete blacklist vulnerability in Launch Services in Apple Mac OS X 10.5.8 allows user-assisted remote attackers to ... |
| CVE-2009-2809 | — | — | 3.2% | Sep 14, 2009 | ImageIO in Apple Mac OS X 10.4.11 and 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of serv... |
| CVE-2009-2807 | — | — | 0.4% | Sep 14, 2009 | Heap-based buffer overflow in the USB backend in CUPS in Apple Mac OS X 10.5.8 allows local users to gain privileges via... |
| CVE-2009-2805 | — | — | 2.9% | Sep 14, 2009 | Integer overflow in CoreGraphics in Apple Mac OS X 10.4.11 and 10.5.8 allows remote attackers to execute arbitrary code ... |
| CVE-2009-2804 | — | — | 4.5% | Sep 14, 2009 | Integer overflow in ColorSync in Apple Mac OS X 10.4.11 and 10.5.8, and Safari before 4.0.4 on Windows, allows remote at... |
| CVE-2009-2803 | — | — | 2.3% | Sep 14, 2009 | CarbonCore in Apple Mac OS X 10.4.11 and 10.5.8 allows attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2009-3182 | — | — | 3.3% | Sep 11, 2009 | Unrestricted file upload vulnerability in admin/editor/filemanager/browser.html in Anantasoft Gazelle CMS 1.0 allows rem... |
| CVE-2009-3181 | — | — | 2.0% | Sep 11, 2009 | Directory traversal vulnerability in Anantasoft Gazelle CMS 1.0 allows remote attackers to overwrite arbitrary files via... |
| CVE-2009-3180 | — | — | 2.1% | Sep 11, 2009 | Anantasoft Gazelle CMS 1.0 allows remote attackers to conduct a password reset for other users via a modified user param... |
| CVE-2009-3179 | — | — | 5.3% | Sep 11, 2009 | Multiple unspecified vulnerabilities in Symantec Altiris Deployment Solution 6.9 might allow remote attackers to execute... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now