CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2009-1596

    Last Modified: 23 Apr 2026

    Ignite Realtime Openfire before 3.6.5 does not properly implement the register.password (aka canChangePassword) console configuration setting, which allows remote authenticated users to bypass intended policy and change their own passwords via a passwd_change IQ packet.

    Published: 11 May 2009
    4
    Medium

    CVE-2009-1595

    Last Modified: 23 Apr 2026

    The jabber:iq:auth implementation in IQAuthHandler.java in Ignite Realtime Openfire before 3.6.4 allows remote authenticated users to change the passwords of arbitrary accounts via a modified username element in a passwd_change action.

    Published: 11 May 2009
    5.8
    Medium

    CVE-2009-1580

    Last Modified: 23 Apr 2026

    Session fixation vulnerability in SquirrelMail before 1.4.18 allows remote attackers to hijack web sessions via a crafted cookie.

    Published: 11 May 2009
    6.8
    Medium

    CVE-2009-1629

    Last Modified: 23 Apr 2026

    ajaxterm.js in AjaxTerm 0.10 and earlier generates session IDs with predictable random numbers based on certain JavaScript functions, which makes it easier for remote attackers to (1) hijack a session or (2) cause a denial of service (session ID exhaustion) via a brute-force attack.

    Published: 11 May 2009
    7.3
    High

    CVE-2009-5147

    Last Modified: 20 Apr 2025

    DL::dlopen in Ruby 1.8, 1.9.0, 1.9.2, 1.9.3, 2.0.0 before patchlevel 648, and 2.1 before 2.1.8 opens libraries with tainted names.

    Published: 11 May 2009
    8.4
    High

    CVE-2015-7551

    Last Modified: 12 Apr 2025

    The Fiddle::Handle implementation in ext/fiddle/handle.c in Ruby before 2.0.0-p648, 2.1 before 2.1.8, and 2.2 before 2.2.4, as distributed in Apple OS X before 10.11.4 and other products, mishandles tainting, which allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted string, related to the DL module and the libffi library. NOTE: this vulnerability exists because of a CVE-2009-5147 regression.

    Published: 11 May 2009
    5
    Medium

    CVE-2009-1379

    Last Modified: 23 Apr 2026

    Use-after-free vulnerability in the dtls1_retrieve_buffered_fragment function in ssl/d1_both.c in OpenSSL 1.0.0 Beta 2 allows remote attackers to cause a denial of service (openssl s_client crash) and possibly have unspecified other impact via a DTLS packet, as demonstrated by a packet from a server that uses a crafted server certificate.

    Published: 11 May 2009
    6.8
    Medium

    CVE-2009-1579

    Last Modified: 23 Apr 2026

    The map_yp_alias function in functions/imap_general.php in SquirrelMail before 1.4.18 and NaSMail before 1.7 allows remote attackers to execute arbitrary commands via shell metacharacters in a username string that is used by the ypmatch program.

    Published: 10 May 2009
    4.4
    Medium

    CVE-2009-1630

    Last Modified: 23 Apr 2026

    The nfs_permission function in fs/nfs/dir.c in the NFS client implementation in the Linux kernel 2.6.29.3 and earlier, when atomic_open is available, does not check execute (aka EXEC or MAY_EXEC) permission bits, which allows local users to bypass permissions and execute files, as demonstrated by files on an NFSv4 fileserver.

    Published: 9 May 2009
    5
    Medium

    CVE-2009-4630

    Last Modified: 11 Apr 2025

    Mozilla Necko, as used in Firefox, SeaMonkey, and other applications, performs DNS prefetching of domain names contained in links within local HTML documents, which makes it easier for remote attackers to determine the network location of the application's user by logging DNS requests. NOTE: the vendor disputes the significance of this issue, stating "I don't think we necessarily need to worry about that case."

    Published: 9 May 2009
    5
    Medium

    CVE-2009-4629

    Last Modified: 11 Apr 2025

    Mozilla Necko, as used in Thunderbird 3.0.1, SeaMonkey, and other applications, performs DNS prefetching even when the app type is APP_TYPE_MAIL or APP_TYPE_EDITOR, which makes it easier for remote attackers to determine the network location of the application's user by logging DNS requests, as demonstrated by DNS requests triggered by reading text/plain e-mail messages in Thunderbird.

    Published: 9 May 2009
    4.3
    Medium

    CVE-2009-1588

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in CGI RESCUE MiniBBS 8t before 8.95t, 8 before 8.95, 9 before 9.08, and 10 before 10.32 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 8 May 2009
    5
    Medium

    CVE-2009-1590

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in CGI RESCUE FORM2MAIL before 1.42 allows remote attackers to send email to arbitrary recipients via a web form.

    Published: 8 May 2009
    10
    Critical

    CVE-2009-1592

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in ElectraSoft 32bit FTP 09.04.24 allows remote FTP servers to execute arbitrary code via a long banner. NOTE: this might overlap CVE-2003-1368.

    Published: 8 May 2009
    5
    Medium

    CVE-2009-1589

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in CGI RESCUE MiniBBS22 before 1.01 allows remote attackers to send email to arbitrary recipients via unknown vectors.

    Published: 8 May 2009
    4.3
    Medium

    CVE-2009-1591

    Last Modified: 23 Apr 2026

    CRLF injection vulnerability in CGI RESCUE Web Mailer before 1.04 allows remote attackers to inject arbitrary HTTP headers, and conduct cross-site scripting (XSS) or HTTP response splitting attacks, via CRLF sequences in an unspecified web form.

    Published: 8 May 2009
    7.5
    High

    CVE-2009-1603

    Last Modified: 23 Apr 2026

    src/tools/pkcs11-tool.c in pkcs11-tool in OpenSC 0.11.7, when used with unspecified third-party PKCS#11 modules, generates RSA keys with incorrect public exponents, which allows attackers to read the cleartext form of messages that were intended to be encrypted.

    Published: 8 May 2009
    4.3
    Medium

    CVE-2009-1578

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail before 1.4.18 and NaSMail before 1.7 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) certain encrypted strings in e-mail headers, related to contrib/decrypt_headers.php; (2) PHP_SELF; and (3) the query string (aka QUERY_STRING).

    Published: 8 May 2009
    7.5
    High

    CVE-2008-6799

    Last Modified: 23 Apr 2026

    connection.php in FlashChat 5.0.8 allows remote attackers to bypass the role filter mechanism and gain administrative privileges by setting the s parameter to "7."

    Published: 7 May 2009
    7.5
    High

    CVE-2009-1582

    Last Modified: 23 Apr 2026

    Million Dollar Text Links 1.0 does not properly restrict administrator access to admin.home.php, which allows remote attackers to bypass intended restrictions and gain privileges via a direct request to admin.home.php after visiting admin.php.

    Published: 7 May 2009
    4.4
    Medium

    CVE-2009-1585

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in TemaTres 1.031, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) id_correo_electronico and (2) id_password parameters to login.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 7 May 2009
    9.3
    Critical

    CVE-2009-1586

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the NZB importer feature in GrabIt 1.7.2 Beta 3 and earlier allows remote attackers to execute arbitrary code via a crafted DTD reference in a DOCTYPE element in an NZB file.

    Published: 7 May 2009
    6
    Medium

    CVE-2009-1584

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in TemaTres 1.0.3 and 1.031, when magic_quotes_gpc is disabled, allow remote attackers or remote authenticated users to execute arbitrary SQL commands via the (1) mail, (2) password, and (3) letra parameters to index.php; (4) y and (5) m parameters to sobre.php; and the (6) dcTema, (7) madsTema, (8) zthesTema, (9) skosTema, and (10) xtmTema parameters to xml.php.

    Published: 7 May 2009
    4.3
    Medium

    CVE-2009-1583

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in TemaTres 1.0.3 and 1.031 allow remote attackers to inject arbitrary web script or HTML via the (1) search form; (2) _expresion_de_busqueda, (3) letra, (4) estado_id, and (5) tema parameters to index.php; the (6) PATH_INFO to index.php; (7) unspecified parameters when editing a term as specified by the edit_id and tema parameters to index.php; and the (7) y, (8) ord, and (9) m parameters to sobre.php.

    Published: 7 May 2009
    7.5
    High

    CVE-2009-1587

    Last Modified: 23 Apr 2026

    index.php in PHP Site Lock 2.0 allows remote attackers to bypass authentication and obtain administrative access by setting the login_id, group_id, login_name, user_id, and user_type cookies to certain values.

    Published: 7 May 2009
    4.4
    Medium

    CVE-2008-6801

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in Vivvo CMS before 4.0.4 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

    Published: 7 May 2009
    7.5
    High

    CVE-2008-6802

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in index.php in phPhotoGallery 0.92 allow remote attackers to execute arbitrary SQL commands via the (1) Username and (2) Password fields. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 7 May 2009
    7.8
    High

    CVE-2008-6797

    Last Modified: 23 Apr 2026

    The server in Mitel NuPoint Messenger R11 and R3 sends usernames and passwords in cleartext to Exchange servers, which allows remote attackers to obtain sensitive information by sniffing the network.

    Published: 7 May 2009
    7.5
    High

    CVE-2008-6798

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in login.php in Pre Projects Pre Real Estate Listings allow remote attackers to execute arbitrary SQL commands via (1) the us parameter (aka the Username field) or (2) the ps parameter (aka the Password field).

    Published: 7 May 2009
    6.8
    Medium

    CVE-2008-6793

    Last Modified: 23 Apr 2026

    The get_file_type function in lib/file_content.php in DFLabs PTK 0.1, 0.2, and 1.0 allows remote attackers to execute arbitrary commands via shell metacharacters after an arg1= sequence in a filename within a forensic image.

    Published: 7 May 2009
    7.5
    High

    CVE-2008-6794

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in directory.php in Scripts For Sites (SFS) EZ Pub Site allows remote attackers to execute arbitrary SQL commands via the cat parameter.

    Published: 7 May 2009
    7.5
    High

    CVE-2008-6795

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in view_news.php in nicLOR Vibro-School-CMS allows remote attackers to execute arbitrary SQL commands via the nID parameter.

    Published: 7 May 2009
    7.5
    High

    CVE-2008-6796

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in manager/login.php in Pre Projects Pre Real Estate Listings allows remote attackers to execute arbitrary SQL commands via the username1 parameter (aka the Admin field or Username field).

    Published: 7 May 2009
    5
    Medium

    CVE-2008-6792

    Last Modified: 23 Apr 2026

    system-tools-backends before 2.6.0-1ubuntu1.1 in Ubuntu 8.10, as used by "Users and Groups" in GNOME System Tools, hashes account passwords with 3DES and consequently limits effective password lengths to eight characters, which makes it easier for context-dependent attackers to successfully conduct brute-force password attacks.

    Published: 7 May 2009
    9.3
    Critical

    CVE-2009-1441

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the ParamTraits<SkBitmap>::Read function in Google Chrome before 1.0.154.64 allows attackers to leverage renderer access to cause a denial of service (application crash) or possibly execute arbitrary code via vectors related to a large bitmap that arrives over the IPC channel.

    Published: 7 May 2009
    6.8
    Medium

    CVE-2009-1442

    Last Modified: 23 Apr 2026

    Multiple integer overflows in Skia, as used in Google Chrome 1.x before 1.0.154.64 and 2.x, and possibly Android, might allow remote attackers to execute arbitrary code in the renderer process via a crafted (1) image or (2) canvas.

    Published: 7 May 2009
    6.8
    Medium

    CVE-2009-4111

    Last Modified: 23 Apr 2026

    Argument injection vulnerability in Mail/sendmail.php in the Mail package 1.1.14, 1.2.0b2, and possibly other versions for PEAR allows remote attackers to read and write arbitrary files via a crafted $recipients parameter, and possibly other parameters, a different vulnerability than CVE-2009-4023.

    Published: 7 May 2009
    7.5
    High

    CVE-2009-4023

    Last Modified: 23 Apr 2026

    Argument injection vulnerability in the sendmail implementation of the Mail::Send method (Mail/sendmail.php) in the Mail package 1.1.14 for PEAR allows remote attackers to read and write arbitrary files via a crafted $from parameter, a different vector than CVE-2009-4111.

    Published: 7 May 2009
    6.8
    Medium

    CVE-2009-1194

    Last Modified: 23 Apr 2026

    Integer overflow in the pango_glyph_string_set_size function in pango/glyphstring.c in Pango before 1.24 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long glyph string that triggers a heap-based buffer overflow, as demonstrated by a long document.location value in Firefox.

    Published: 7 May 2009
    3.5
    Low

    CVE-2009-1556

    Last Modified: 23 Apr 2026

    img/main.cgi on the Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R22 and 1.00R24 allows remote authenticated users to read arbitrary files in img/ via a filename in the next_file parameter, as demonstrated by reading .htpasswd to obtain the admin password, a different vulnerability than CVE-2004-2507.

    Published: 6 May 2009
    4.3
    Medium

    CVE-2009-1557

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities on the Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R22 and 1.00R24 allow remote attackers to inject arbitrary web script or HTML via the next_file parameter to (1) main.cgi, (2) img/main.cgi, or (3) adm/file.cgi; or (4) the this_file parameter to adm/file.cgi.

    Published: 6 May 2009
    7.8
    High

    CVE-2009-1558

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in adm/file.cgi on the Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R22 and 1.00R24 allows remote attackers to read arbitrary files via a %2e. (encoded dot dot) or an absolute pathname in the next_file parameter.

    Published: 6 May 2009
    7.8
    High

    CVE-2009-1559

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in adm/file.cgi on the Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R24 and possibly 1.00R22 allows remote attackers to read arbitrary files via an absolute pathname in the this_file parameter. NOTE: traversal via a .. (dot dot) is probably also possible.

    Published: 6 May 2009
    7.8
    High

    CVE-2009-1560

    Last Modified: 23 Apr 2026

    The Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R22 and 1.00R24 stores passwords and wireless-network keys in cleartext in (1) pass_wd.htm and (2) Wsecurity.htm, which allows remote attackers to obtain sensitive information by reading the HTML source code.

    Published: 6 May 2009
    4.3
    Medium

    CVE-2009-1554

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in ThemeServlet.java in Sun Woodstock 4.2, as used in Sun GlassFish Enterprise Server and other products, allows remote attackers to inject arbitrary web script or HTML via a UTF-7 string in the PATH_INFO, which is displayed on the 404 error page, as demonstrated by the PATH_INFO to theme/META-INF.

    Published: 6 May 2009
    6.8
    Medium

    CVE-2009-1561

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in administration.cgi on the Cisco Linksys WRT54GC router with firmware 1.05.7 allows remote attackers to hijack the intranet connectivity of arbitrary users for requests that change the administrator password via the sysPasswd and sysConfirmPasswd parameters.

    Published: 6 May 2009
    4.3
    Medium

    CVE-2009-1553

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in the Admin Console in Sun GlassFish Enterprise Server 2.1 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) applications/applications.jsf, (2) configuration/configuration.jsf, (3) customMBeans/customMBeans.jsf, (4) resourceNode/resources.jsf, (5) sysnet/registration.jsf, or (6) webService/webServicesGeneral.jsf; or the name parameter to (7) configuration/auditModuleEdit.jsf, (8) configuration/httpListenerEdit.jsf, or (9) resourceNode/jdbcResourceEdit.jsf.

    Published: 6 May 2009
    5
    Medium

    CVE-2009-1555

    Last Modified: 23 Apr 2026

    The Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R22 and 1.00R24 sends configuration data in response to a Setup Wizard remote-management command, which allows remote attackers to obtain sensitive information such as passwords by reading the SetupWizard.exe process memory, a related issue to CVE-2008-4390.

    Published: 6 May 2009
    7.8
    High

    CVE-2009-1552

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the IGMP driver in SCO Unixware Release 7.1.4 Maintenance Pack 4 allows attackers to cause a denial of service (system panic) via unspecified vectors.

    Published: 6 May 2009
    7.5
    High

    CVE-2009-1548

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in BluSky CMS allows remote attackers to execute arbitrary SQL commands via the news_id parameter in a read action.

    Published: 6 May 2009