2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-1877 | — | — | 1.8% | Aug 18, 2009 | Cross-site scripting (XSS) vulnerability in Adobe ColdFusion 8.0.1 and earlier allows remote attackers to inject arbitra... |
| CVE-2009-1876 | — | — | 2.8% | Aug 18, 2009 | Adobe ColdFusion 8.0.1 and earlier might allow attackers to obtain sensitive information via unspecified vectors, relate... |
| CVE-2009-1875 | — | — | 1.8% | Aug 18, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Adobe ColdFusion 8.0.1 and earlier allow remote attackers to inje... |
| CVE-2009-1874 | — | — | 1.8% | Aug 18, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the Management Console in Adobe JRun 4.0 allow remote attackers t... |
| CVE-2009-1873 | — | — | 4.7% | Aug 18, 2009 | Directory traversal vulnerability in logging/logviewer.jsp in the Management Console in Adobe JRun Application Server 4 ... |
| CVE-2009-1872 | — | — | 16.1% | Aug 18, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Adobe ColdFusion Server 8.0.1, 8, and earlier allow remote attack... |
| CVE-2009-2855 | — | — | 36.7% | Aug 18, 2009 | The strListGetItem function in src/HttpHeaderTools.c in Squid 2.7 allows remote attackers to cause a denial of service v... |
| CVE-2009-2854 | — | — | 2.3% | Aug 18, 2009 | Wordpress before 2.8.3 does not check capabilities for certain actions, which allows remote attackers to make unauthoriz... |
| CVE-2009-2853 | — | — | 4.7% | Aug 18, 2009 | Wordpress before 2.8.3 allows remote attackers to gain privileges via a direct request to (1) admin-footer.php, (2) edit... |
| CVE-2009-2852 | — | — | 4.8% | Aug 18, 2009 | WP-Syntax plugin 0.9.1 and earlier for Wordpress, with register_globals enabled, allows remote attackers to execute arbi... |
| CVE-2009-2851 | — | — | 7.9% | Aug 18, 2009 | Cross-site scripting (XSS) vulnerability in the administrator interface in WordPress before 2.8.2 allows remote attacker... |
| CVE-2009-2850 | — | — | 2.9% | Aug 18, 2009 | Multiple buffer overflows in NASA Common Data Format (CDF) allow context-dependent attackers to execute arbitrary code, ... |
| CVE-2009-2849 | — | — | 0.5% | Aug 18, 2009 | The md driver (drivers/md/md.c) in the Linux kernel before 2.6.30.2 might allow local users to cause a denial of service... |
| CVE-2009-2848 | — | — | 0.5% | Aug 18, 2009 | The execve function in the Linux kernel, possibly 2.6.30-rc6 and earlier, does not properly clear the current->clear_chi... |
| CVE-2009-2847 | — | — | 0.9% | Aug 18, 2009 | The do_sigaltstack function in kernel/signal.c in Linux kernel 2.4 through 2.4.37 and 2.6 before 2.6.31-rc5, when runnin... |
| CVE-2009-2846 | — | — | 8.2% | Aug 18, 2009 | The eisa_eeprom_read function in the parisc isa-eeprom component (drivers/parisc/eisa_eeprom.c) in the Linux kernel befo... |
| CVE-2009-2844 | — | — | 3.4% | Aug 18, 2009 | cfg80211 in net/wireless/scan.c in the Linux kernel 2.6.30-rc1 and other versions before 2.6.31-rc6 allows remote attack... |
| CVE-2009-2845 | — | — | — | Aug 18, 2009 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-2768. Reason: This candidate is a duplicate of... |
| CVE-2009-2792 | — | — | 2.3% | Aug 17, 2009 | Directory traversal vulnerability in plugings/pagecontent.php in Really Simple CMS (RSCMS) 0.3a allows remote attackers ... |
| CVE-2009-2791 | — | — | 2.1% | Aug 17, 2009 | PHP remote file inclusion vulnerability in pda_projects.php in WebDynamite ProjectButler 1.5.0 allows remote attackers t... |
| CVE-2009-2790 | — | — | 1.0% | Aug 17, 2009 | SQL injection vulnerability in cat_products.php in SoftBiz Dating Script allows remote attackers to execute arbitrary SQ... |
| CVE-2009-2789 | — | — | 1.1% | Aug 17, 2009 | SQL injection vulnerability in the Permis (com_groups) component 1.0 for Joomla! allows remote attackers to execute arbi... |
| CVE-2009-2788 | — | — | 0.9% | Aug 17, 2009 | Multiple SQL injection vulnerabilities in Mobilelib GOLD 3 allow remote attackers to execute arbitrary SQL commands via ... |
| CVE-2009-2787 | — | — | 4.2% | Aug 17, 2009 | Directory traversal vulnerability in include/reputation/rep_profile.php in the Reputation plugin 2.2.4, 2.2.3, 2.0.4, an... |
| CVE-2009-2786 | — | — | 1.0% | Aug 17, 2009 | SQL injection vulnerability in reputation.php in the Reputation plugin 2.2.4, 2.2.3, 2.0.4, and earlier for PunBB allows... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now