2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2896 | — | — | 5.6% | Aug 20, 2009 | Buffer overflow in KMplayer 2.9.4.1433 and earlier allows remote attackers to cause a denial of service (application cra... |
| CVE-2009-2895 | — | — | 0.9% | Aug 20, 2009 | SQL injection vulnerability in rss.php in Ultimate Regnow Affiliate (URA) 3.0 allows remote attackers to execute arbitra... |
| CVE-2009-2894 | — | — | 1.2% | Aug 20, 2009 | Multiple SQL injection vulnerabilities in Ebay Clone 2009 allow remote attackers to execute arbitrary SQL commands via t... |
| CVE-2009-2893 | — | — | 1.5% | Aug 20, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in XZero Community Classifieds 4.97.8 allow remote atta... |
| CVE-2009-2892 | — | — | 1.1% | Aug 20, 2009 | Multiple SQL injection vulnerabilities in header.php in Scripteen Free Image Hosting Script 2.3 allow remote attackers t... |
| CVE-2009-2891 | — | — | 1.0% | Aug 20, 2009 | SQL injection vulnerability in list.php in PHP Scripts Now Riddles allows remote attackers to execute arbitrary SQL comm... |
| CVE-2009-2890 | — | — | 3.1% | Aug 20, 2009 | Cross-site scripting (XSS) vulnerability in results.php in PHP Scripts Now Riddles allows remote attackers to inject arb... |
| CVE-2009-2889 | — | — | 1.5% | Aug 20, 2009 | Cross-site scripting (XSS) vulnerability in index.php in PHP Scripts Now Hangman allows remote attackers to inject arbit... |
| CVE-2009-2888 | — | — | 1.0% | Aug 20, 2009 | SQL injection vulnerability in index.php in PHP Scripts Now Hangman allows remote attackers to execute arbitrary SQL com... |
| CVE-2009-2887 | — | — | 1.1% | Aug 20, 2009 | Cross-site scripting (XSS) vulnerability in bios.php in PHP Scripts Now President Bios allows remote attackers to inject... |
| CVE-2009-2886 | — | — | 1.2% | Aug 20, 2009 | SQL injection vulnerability in bios.php in PHP Scripts Now President Bios allows remote attackers to execute arbitrary S... |
| CVE-2009-2885 | — | — | 1.0% | Aug 20, 2009 | SQL injection vulnerability in bios.php in PHP Scripts Now World's Tallest Buildings allows remote attackers to execute ... |
| CVE-2009-2884 | — | — | 1.5% | Aug 20, 2009 | Cross-site scripting (XSS) vulnerability in bios.php in PHP Scripts Now World's Tallest Buildings allows remote attacker... |
| CVE-2009-2883 | — | — | 0.9% | Aug 20, 2009 | SQL injection vulnerability in admin/login.php in SaphpLesson 4.0, when magic_quotes_gpc is disabled, allows remote atta... |
| CVE-2009-2882 | — | — | 1.5% | Aug 20, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in PG MatchMaking allow remote attackers to inject arbitrary web scr... |
| CVE-2009-2881 | — | — | 1.2% | Aug 20, 2009 | Multiple SQL injection vulnerabilities in Basilic 1.5.13 allow remote attackers to execute arbitrary SQL commands via th... |
| CVE-2009-2860 | — | — | 2.2% | Aug 19, 2009 | Unspecified vulnerability in db2jds in IBM DB2 8.1 before FP18 allows remote attackers to cause a denial of service (ser... |
| CVE-2009-2859 | — | — | 0.4% | Aug 19, 2009 | IBM DB2 8.1 before FP18 allows attackers to obtain unspecified access via a das command. |
| CVE-2009-2858 | — | — | 1.7% | Aug 19, 2009 | Memory leak in the Security component in IBM DB2 8.1 before FP18 on Unix platforms allows attackers to cause a denial of... |
| CVE-2009-2740 | — | — | 1.6% | Aug 19, 2009 | kmxIds.sys before 7.3.1.18 in CA Host-Based Intrusion Prevention System (HIPS) 8.1 allows remote attackers to cause a de... |
| CVE-2009-2627 | — | — | 4.6% | Aug 19, 2009 | Insecure method vulnerability in the Acer LunchApp (aka AcerCtrls.APlunch) ActiveX control in acerctrl.ocx allows remote... |
| CVE-2009-1884 | — | — | 2.1% | Aug 19, 2009 | Off-by-one error in the bzinflate function in Bzip2.xs in the Compress-Raw-Bzip2 module before 2.018 for Perl allows con... |
| CVE-2009-0682 | — | — | 0.4% | Aug 19, 2009 | vetmonnt.sys in CA Internet Security Suite r3, vetmonnt.sys before 9.0.0.184 in Internet Security Suite r4, and vetmonnt... |
| CVE-2009-2856 | — | — | 1.3% | Aug 18, 2009 | Sun Virtual Desktop Infrastructure (VDI) 3.0, when anonymous binding is enabled, does not properly handle a client's att... |
| CVE-2009-1878 | — | — | 2.3% | Aug 18, 2009 | Session fixation vulnerability in Adobe ColdFusion 8.0.1 and earlier allows remote attackers to hijack web sessions via ... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now