2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-3069 | — | — | 3.7% | Sep 10, 2009 | Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.3 allows remote attackers to cause a... |
| CVE-2009-2815 | — | — | 2.5% | Sep 10, 2009 | The Telephony component in Apple iPhone OS before 3.1 does not properly handle SMS arrival notifications, which allows r... |
| CVE-2009-2799 | — | — | 5.7% | Sep 10, 2009 | Heap-based buffer overflow in Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a ... |
| CVE-2009-2798 | — | — | 5.7% | Sep 10, 2009 | Heap-based buffer overflow in Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a ... |
| CVE-2009-2797 | — | — | 3.6% | Sep 10, 2009 | The WebKit component in Safari in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod touch, does not remove... |
| CVE-2009-2796 | — | — | 0.4% | Sep 10, 2009 | The UIKit component in Apple iPhone OS 3.0, and iPhone OS 3.0.1 for iPod touch, allows physically proximate attackers to... |
| CVE-2009-2795 | — | — | 0.4% | Sep 10, 2009 | Heap-based buffer overflow in the Recovery Mode component in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for ... |
| CVE-2009-2794 | — | — | 0.3% | Sep 10, 2009 | The Exchange Support component in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod touch, does not proper... |
| CVE-2009-2207 | — | — | 0.3% | Sep 10, 2009 | The MobileMail component in Apple iPhone OS 3.0 and 3.0.1, and iPhone OS 3.0 for iPod touch, lists deleted e-mail messag... |
| CVE-2009-2206 | — | — | 4.6% | Sep 10, 2009 | Multiple heap-based buffer overflows in the AudioCodecs library in the CoreAudio component in Apple iPhone OS before 3.1... |
| CVE-2009-2203 | — | — | 5.7% | Sep 10, 2009 | Buffer overflow in Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a denial of s... |
| CVE-2009-2202 | — | — | 4.9% | Sep 10, 2009 | Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr... |
| CVE-2009-3162 | — | — | 1.3% | Sep 10, 2009 | Cross-site scripting (XSS) vulnerability in Multi Website 1.5 allows remote attackers to inject arbitrary web script or ... |
| CVE-2009-3161 | — | — | 1.8% | Sep 10, 2009 | The server in IBM WebSphere MQ 7.0.0.1, 7.0.0.2, and 7.0.1.0 allows attackers to cause a denial of service (trap) or pos... |
| CVE-2009-3160 | — | — | 1.5% | Sep 10, 2009 | IBM WebSphere MQ 6.x through 6.0.2.7, 7.0.0.0, 7.0.0.1, 7.0.0.2, and 7.0.1.0, when read ahead or asynchronous message co... |
| CVE-2009-3159 | — | — | 2.5% | Sep 10, 2009 | Unspecified vulnerability in the rriDecompress function in IBM WebSphere MQ 7.0.0.0, 7.0.0.1, and 7.0.0.2 allows remote ... |
| CVE-2009-3158 | — | — | 2.7% | Sep 10, 2009 | admin/files.php in simplePHPWeb 0.2 does not require authentication, which allows remote attackers to perform unspecifie... |
| CVE-2009-3157 | — | — | 1.0% | Sep 10, 2009 | Cross-site scripting (XSS) vulnerability in the Calendar module 6.x before 6.x-2.2 for Drupal allows remote authenticate... |
| CVE-2009-3156 | — | — | 1.2% | Sep 10, 2009 | Cross-site scripting (XSS) vulnerability in the Date Tools sub-module in the Date module 6.x before 6.x-2.3 for Drupal a... |
| CVE-2009-3155 | — | — | 1.4% | Sep 10, 2009 | Cross-site scripting (XSS) vulnerability in gmap.php in the Almond Classifieds (com_aclassf) component 7.5 for Joomla! a... |
| CVE-2009-3154 | — | — | 0.9% | Sep 10, 2009 | SQL injection vulnerability in the Almond Classifieds (com_aclassf) component 7.5 for Joomla! allows remote attackers to... |
| CVE-2009-3153 | — | — | 1.5% | Sep 10, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in x10 MP3 Search engine 1.6.5 allow remote attackers to inject arbi... |
| CVE-2009-3152 | — | — | 1.5% | Sep 10, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in becommunity/community/index.php in NTSOFT BBS E-Market Profession... |
| CVE-2009-3151 | — | — | 2.7% | Sep 10, 2009 | Directory traversal vulnerability in actions/downloadFile.php in Ultrize TimeSheet 1.2.2 allows remote attackers to read... |
| CVE-2009-3150 | — | — | 1.0% | Sep 10, 2009 | SQL injection vulnerability in index.php in Multi Website 1.5 allows remote attackers to execute arbitrary SQL commands ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now