2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-20008 | HIGH | 8.6 | 0.8% | Aug 30, 2025 | Green Dam Youth Escort version 3.17 is vulnerable to a stack-based buffer overflow when processing overly long URLs. The... |
| CVE-2009-20004 | HIGH | 8.4 | 0.3% | Aug 21, 2025 | gAlan 0.2.1, a modular audio processing environment for Windows, is vulnerable to a stack-based buffer overflow when par... |
| CVE-2009-20003 | HIGH | 8.4 | 0.3% | Aug 21, 2025 | Xenorate versions up to and including 2.50, a Windows-based multimedia player, is vulnerable to a stack-based buffer ove... |
| CVE-2009-20002 | HIGH | 8.4 | 0.5% | Aug 21, 2025 | Millenium MP3 Studio versions up to and including 2.0 is vulnerable to a stack-based buffer overflow when parsing .pls p... |
| CVE-2009-10005 | HIGH | 8.7 | 0.7% | Aug 20, 2025 | ContentKeeper Web Appliance (now maintained by Impero Software) versions prior to 125.10 expose the mimencode binary via... |
| CVE-2009-4123 | HIGH | 7.5 | 0.6% | Dec 12, 2023 | The jruby-openssl gem before 0.6 for JRuby mishandles SSL certificate validation. |
| CVE-2009-1143 | HIGH | 7 | 0.2% | Nov 23, 2022 | An issue was discovered in open-vm-tools 2009.03.18-154848. Local users can bypass intended access restrictions on mount... |
| CVE-2009-3721 | HIGH | 7.8 | 1.6% | May 26, 2021 | Multiple directory traversal and buffer overflow vulnerabilities were discovered in yTNEF, and in Evolution's TNEF parse... |
| CVE-2009-20001 | HIGH | 8.1 | 0.9% | Mar 7, 2021 | An issue was discovered in MantisBT before 2.24.5. It associates a unique cookie string with each user. This string is n... |
| CVE-2009-5140 | HIGH | 8.8 | 1.4% | Feb 12, 2020 | The SIP implementation on the Linksys SPA2102 phone adapter provides hashed credentials in a response to an invalid auth... |
| CVE-2009-5139 | HIGH | 7.5 | 0.4% | Feb 12, 2020 | The SIP implementation on the Gizmo5 software phone provides hashed credentials in a response to an invalid authenticati... |
| CVE-2009-5068 | HIGH | 7.2 | 1.7% | Jan 15, 2020 | There is a file disclosure vulnerability in SMF (Simple Machines Forum) affecting versions through v2.0.3. On some confi... |
| CVE-2009-5025 | HIGH | 7.5 | 1.8% | Jan 15, 2020 | A backdoor (aka BMSA-2009-07) was found in PyForum v1.0.3 where an attacker who knows a valid user email could force a p... |
| CVE-2009-4011 | HIGH | 8.1 | 1.0% | Nov 9, 2019 | dtc-xen 0.5.x before 0.5.4 suffers from a race condition where an attacker could potentially get a bash access as xenXX ... |
| CVE-2009-5045 | HIGH | 7.5 | 2.3% | Nov 6, 2019 | Dump Servlet information leak in jetty before 6.1.22. |
| CVE-2009-5050 | HIGH | 7.5 | 1.7% | Nov 6, 2019 | konversation before 1.2.3 allows attackers to cause a denial of service. |
| CVE-2009-3723 | HIGH | 7.5 | 1.2% | Oct 29, 2019 | asterisk allows calls on prohibited networks |
| CVE-2009-4272 | HIGH | 7.5 | 11.1% | Jan 27, 2010 | A certain Red Hat patch for net/ipv4/route.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remo... |
| CVE-2009-3953 | HIGH | 8.8 | 83.6% | Jan 13, 2010 | The U3D implementation in Adobe Reader and Acrobat 9.x before 9.3, 8.x before 8.2 on Windows and Mac OS X, and 7.x befor... |
| CVE-2009-3791 | HIGH | 7.5 | 2.6% | Dec 21, 2009 | Unspecified vulnerability in Adobe Flash Media Server (FMS) before 3.5.3 allows attackers to cause a denial of service (... |
| CVE-2009-4324 | HIGH | 7.8 | 81.9% | Dec 15, 2009 | Use-after-free vulnerability in the Doc.media.newPlayer method in Multimedia.api in Adobe Reader and Acrobat 9.x before ... |
| CVE-2009-3671 | HIGH | 8.1 | 21.0% | Dec 9, 2009 | Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbit... |
| CVE-2009-4194 | HIGH | 8.1 | 3.4% | Dec 3, 2009 | Directory traversal vulnerability in Golden FTP Server 4.30 Free and Professional, 4.50, and possibly other versions all... |
| CVE-2009-4004 | HIGH | 7.8 | 0.4% | Nov 20, 2009 | Buffer overflow in the kvm_vcpu_ioctl_x86_setup_mce function in arch/x86/kvm/x86.c in the KVM subsystem in the Linux ker... |
| CVE-2009-3553 | HIGH | 7.5 | 3.9% | Nov 20, 2009 | Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in schedul... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now