CVE Feed

    Dashboard / CVE

    9.3
    Critical

    CVE-2009-1708

    Last Modified: 23 Apr 2026

    Apple Safari before 4.0 does not prevent calls to the open-help-anchor URL handler by web sites, which allows remote attackers to open arbitrary local help files, and execute arbitrary code or obtain sensitive information, via a crafted call.

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2009-1712

    Last Modified: 23 Apr 2026

    WebKit in Apple Safari before 4.0 does not prevent remote loading of local Java applets, which allows remote attackers to execute arbitrary code, gain privileges, or obtain sensitive information via an APPLET or OBJECT element.

    Published: 10 Jun 2009
    4.3
    Medium

    CVE-2009-1714

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via vectors related to the improper escaping of HTML attributes.

    Published: 10 Jun 2009
    2.1
    Low

    CVE-2009-1716

    Last Modified: 23 Apr 2026

    CFNetwork in Apple Safari before 4.0 on Windows does not properly protect the temporary files created for downloads, which allows local users to obtain sensitive information by reading these files.

    Published: 10 Jun 2009
    10
    Critical

    CVE-2009-0228

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the EnumeratePrintShares function in Windows Print Spooler Service (win32spl.dll) in Microsoft Windows 2000 SP4 allows remote printer servers to execute arbitrary code via a crafted ShareName in a response to an RPC request, related to "printing data structures," aka "Buffer Overflow in Print Spooler Vulnerability."

    Published: 10 Jun 2009
    10
    Critical

    CVE-2009-1138

    Last Modified: 23 Apr 2026

    The LDAP service in Active Directory on Microsoft Windows 2000 SP4 does not properly free memory for LDAP and LDAPS requests, which allows remote attackers to execute arbitrary code via a request that uses hexadecimal encoding, whose associated memory is not released, related to a "DN AttributeValue," aka "Active Directory Invalid Free Vulnerability." NOTE: this issue is probably a memory leak.

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2009-1705

    Last Modified: 23 Apr 2026

    CoreGraphics in Apple Safari before 4.0 on Windows does not properly use arithmetic during automatic hinting of TrueType fonts, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted font data.

    Published: 10 Jun 2009
    7.8
    High

    CVE-2009-0563

    Last Modified: 22 Apr 2026

    Stack-based buffer overflow in Microsoft Office Word 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Microsoft Office for Mac 2004 and 2008; Open XML File Format Converter for Mac; Microsoft Office Word Viewer 2003 SP3; Microsoft Office Word Viewer; and Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a Word document with a crafted tag containing an invalid length field, aka "Word Buffer Overflow Vulnerability."

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2009-1698

    Last Modified: 23 Apr 2026

    WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not initialize a pointer during handling of a Cascading Style Sheets (CSS) attr function call with a large numerical argument, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2009-1704

    Last Modified: 23 Apr 2026

    CFNetwork in Apple Safari before 4.0 misinterprets downloaded image files as local HTML documents in unspecified circumstances, which allows remote attackers to execute arbitrary JavaScript code by placing it in an image file.

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2009-1709

    Last Modified: 23 Apr 2026

    Use-after-free vulnerability in the garbage-collection implementation in WebCore in WebKit in Apple Safari before 4.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption and application crash) via an SVG animation element, related to SVG set objects, SVG marker elements, the targetElement attribute, and unspecified "caches."

    Published: 10 Jun 2009
    4.9
    Medium

    CVE-2009-0229

    Last Modified: 23 Apr 2026

    The Windows Printing Service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 allows local users to read arbitrary files via a crafted separator page, aka "Print Spooler Read File Vulnerability."

    Published: 10 Jun 2009
    4.3
    Medium

    CVE-2009-0239

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Windows Search 4.0 for Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows user-assisted remote attackers to inject arbitrary web script or HTML via a crafted file that appears in a preview in a search result, aka "Script Execution in Windows Search Vulnerability."

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2009-0565

    Last Modified: 23 Apr 2026

    Buffer overflow in Microsoft Office Word 2000 SP3, 2002 SP3, and 2007 SP1 and SP2; Microsoft Office for Mac 2004 and 2008; Open XML File Format Converter for Mac; and Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a Word document with a malformed record that triggers memory corruption, aka "Word Buffer Overflow Vulnerability."

    Published: 10 Jun 2009
    10
    Critical

    CVE-2009-0568

    Last Modified: 23 Apr 2026

    The RPC Marshalling Engine (aka NDR) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 does not properly maintain its internal state, which allows remote attackers to overwrite arbitrary memory locations via a crafted RPC message that triggers incorrect pointer reading, related to "IDL interfaces containing a non-conformant varying array" and FC_SMVARRAY, FC_LGVARRAY, FC_VARIABLE_REPEAT, and FC_VARIABLE_OFFSET, aka "RPC Marshalling Engine Vulnerability."

    Published: 10 Jun 2009
    7.8
    High

    CVE-2009-1139

    Last Modified: 23 Apr 2026

    Memory leak in the LDAP service in Active Directory on Microsoft Windows 2000 SP4 and Server 2003 SP2, and Active Directory Application Mode (ADAM) on Windows XP SP2 and SP3 and Server 2003 SP2, allows remote attackers to cause a denial of service (memory consumption and service outage) via (1) LDAP or (2) LDAPS requests with unspecified OID filters, aka "Active Directory Memory Leak Vulnerability."

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2009-1533

    Last Modified: 23 Apr 2026

    Buffer overflow in the Works for Windows document converters in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, Office 2007 SP1, and Works 8.5 and 9 allows remote attackers to execute arbitrary code via a crafted Works .wps file that triggers memory corruption, aka "File Converter Buffer Overflow Vulnerability."

    Published: 10 Jun 2009
    7.5
    High

    CVE-2009-1699

    Last Modified: 23 Apr 2026

    The XSL stylesheet implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle XML external entities, which allows remote attackers to read arbitrary files via a crafted DTD, as demonstrated by a file:///etc/passwd URL in an entity declaration, related to an "XXE attack."

    Published: 10 Jun 2009
    4.3
    Medium

    CVE-2009-1700

    Last Modified: 23 Apr 2026

    The XSLT implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle redirects, which allows remote attackers to read XML content from arbitrary web pages via a crafted document.

    Published: 10 Jun 2009
    2.6
    Low

    CVE-2009-1710

    Last Modified: 23 Apr 2026

    WebKit in Apple Safari before 4.0 allows remote attackers to spoof the browser's display of (1) the host name, (2) security indicators, and unspecified other UI elements via a custom cursor in conjunction with a modified CSS3 hotspot property.

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2009-1711

    Last Modified: 23 Apr 2026

    WebKit in Apple Safari before 4.0 does not properly initialize memory for Attr DOM objects, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted HTML document.

    Published: 10 Jun 2009
    7.1
    High

    CVE-2009-1713

    Last Modified: 23 Apr 2026

    The XSLT functionality in WebKit in Apple Safari before 4.0 does not properly implement the document function, which allows remote attackers to read (1) arbitrary local files and (2) files from different security zones via unspecified vectors.

    Published: 10 Jun 2009
    4.3
    Medium

    CVE-2009-1715

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via vectors related to script execution with incorrect privileges.

    Published: 10 Jun 2009
    7.1
    High

    CVE-2009-1718

    Last Modified: 23 Apr 2026

    WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to obtain sensitive information via vectors involving drag events and the dragging of content over a crafted web page.

    Published: 10 Jun 2009
    4.3
    Medium

    CVE-2009-1681

    Last Modified: 23 Apr 2026

    WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not prevent web sites from loading third-party content into a subframe, which allows remote attackers to bypass the Same Origin Policy and conduct "clickjacking" attacks via a crafted HTML document.

    Published: 10 Jun 2009
    4.3
    Medium

    CVE-2009-1682

    Last Modified: 23 Apr 2026

    Apple Safari before 4.0 does not properly check for revoked Extended Validation (EV) certificates, which makes it easier for remote attackers to trick a user into accepting an invalid certificate.

    Published: 10 Jun 2009
    4.3
    Medium

    CVE-2009-1688

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to determining a security context through an approach that is not the "HTML 5 standard method."

    Published: 10 Jun 2009
    4.3
    Medium

    CVE-2009-1689

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors involving submission of a form to the about:blank URL, leading to security-context replacement.

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2009-1687

    Last Modified: 23 Apr 2026

    The JavaScript garbage collector in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle allocation failures, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document that triggers write access to an "offset of a NULL pointer."

    Published: 10 Jun 2009
    5.8
    Medium

    CVE-2009-1693

    Last Modified: 23 Apr 2026

    WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to read images from arbitrary web sites via a CANVAS element with an SVG image, related to a "cross-site image capture issue."

    Published: 10 Jun 2009
    5.8
    Medium

    CVE-2009-1694

    Last Modified: 23 Apr 2026

    WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle redirects, which allows remote attackers to read images from arbitrary web sites via vectors involving a CANVAS element and redirection, related to a "cross-site image capture issue."

    Published: 10 Jun 2009
    7.5
    High

    CVE-2009-1535

    Last Modified: 23 Apr 2026

    The WebDAV extension in Microsoft Internet Information Services (IIS) 5.1 and 6.0 allows remote attackers to bypass URI-based protection mechanisms, and list folders or read, create, or modify files, via a %c0%af (Unicode / character) at an arbitrary position in the URI, as demonstrated by inserting %c0%af into a "/protected/" initial pathname component to bypass the password protection on the protected\ folder, aka "IIS 5.1 and 6.0 WebDAV Authentication Bypass Vulnerability," a different vulnerability than CVE-2009-1122.

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2009-1690

    Last Modified: 23 Apr 2026

    Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Google Chrome 1.0.154.53, and possibly other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) by setting an unspecified property of an HTML tag that causes child elements to be freed and later accessed when an HTML error occurs, related to "recursion in certain DOM event handlers."

    Published: 10 Jun 2009
    4.3
    Medium

    CVE-2009-1691

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to insufficient access control for standard JavaScript prototypes in other domains.

    Published: 10 Jun 2009
    4.3
    Medium

    CVE-2009-1684

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via an event handler that triggers script execution in the context of the next loaded document.

    Published: 10 Jun 2009
    4.3
    Medium

    CVE-2009-1685

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML by overwriting the document.implementation property of (1) an embedded document or (2) a parent document.

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2009-1686

    Last Modified: 23 Apr 2026

    WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle constant (aka const) declarations in a type-conversion operation during JavaScript exception handling, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.

    Published: 10 Jun 2009
    5
    Medium

    CVE-2009-1904

    Last Modified: 23 Apr 2026

    The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

    Published: 10 Jun 2009
    9.3
    Critical

    CVE-2008-2475

    Last Modified: 23 Apr 2026

    eBay Enhanced Picture Uploader ActiveX control (EPUWALcontrol.dll) before 1.0.27 allows remote attackers to execute arbitrary commands via the PictureUrls property.

    Published: 9 Jun 2009
    1.9
    Low

    CVE-2009-1296

    Last Modified: 23 Apr 2026

    The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount passphrase in installation logs, which might allow local users to obtain access to the filesystem by reading the log files from disk. NOTE: the log files are only readable by root.

    Published: 9 Jun 2009
    7.5
    High

    CVE-2009-2025

    Last Modified: 23 Apr 2026

    admin/login.php in DM FileManager 3.9.2 allows remote attackers to bypass authentication and gain administrative access by setting the (1) USER, (2) GROUPID, (3) GROUP, and (4) USERID cookies to certain values.

    Published: 9 Jun 2009
    5
    Medium

    CVE-2009-2024

    Last Modified: 23 Apr 2026

    Vlad Titarenko ASP VT Auth 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file and obtain usernames and passwords via a direct request for zHk8dEes3.txt.

    Published: 9 Jun 2009
    7.5
    High

    CVE-2009-2016

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in products.php in Virtue Shopping Mall allows remote attackers to execute arbitrary SQL commands via the cid parameter.

    Published: 9 Jun 2009
    7.5
    High

    CVE-2009-2017

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in products.php in Virtue Book Store allows remote attackers to execute arbitrary SQL commands via the cid parameter.

    Published: 9 Jun 2009
    6.8
    Medium

    CVE-2009-2018

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in admin/index.php in Jared Eckersley MyCars, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the authuserid parameter.

    Published: 9 Jun 2009
    7.5
    High

    CVE-2009-2019

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in news_detail.php in Virtue News Manager allows remote attackers to execute arbitrary SQL commands via the nid parameter.

    Published: 9 Jun 2009
    4.3
    Medium

    CVE-2009-2020

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in news_detail.php in Virtue News Manager allows remote attackers to inject arbitrary web script or HTML via the nid parameter.

    Published: 9 Jun 2009
    7.5
    High

    CVE-2009-2021

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in search.php in Virtue Classifieds allows remote attackers to execute arbitrary SQL commands via the category parameter.

    Published: 9 Jun 2009
    5
    Medium

    CVE-2009-2022

    Last Modified: 23 Apr 2026

    fipsCMS Light 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file and obtain sensitive information via a direct request for _fipsdb/db.mdb.

    Published: 9 Jun 2009
    6.8
    Medium

    CVE-2009-2023

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in Shop-Script Pro 2.12, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the current_currency parameter.

    Published: 9 Jun 2009