9.3
    Critical

    CVE-2009-4265

    Last Modified: 10 Mar 2011

    Stack-based buffer overflow in Ideal Administration 2009 9.7.1, and possibly other versions, allows remote attackers to execute arbitrary code via a long Computer value in an .ipj project file.

    Source:Metasploit
    Published:10 Dec 2009
    6.8
    Medium

    CVE-2009-4264

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in components/core/connect.php in AROUNDMe 1.1 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the language_path parameter.

    Source:cr4wl3r
    Published:10 Dec 2009
    7.5
    High

    CVE-2009-4263

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in main_forum.php in PTCPay GeN3 forum 1.3 allows remote attackers to execute arbitrary SQL commands via the cat parameter.

    Source:Dr.0rYX & Cr3W-DZ
    Published:10 Dec 2009
    7.5
    High

    CVE-2009-4256

    Last Modified: 12 Jul 2015

    Multiple SQL injection vulnerabilities in cource.php in AlefMentor 2.0 and 2.2 allow remote attackers to execute arbitrary SQL commands via the (1) cont_id and (2) courc_id parameters in a pregled action. NOTE: some of these details are obtained from third party information.

    Source:Red-D3v1L
    Published:10 Dec 2009
    4.3
    Medium

    CVE-2009-4253

    Last Modified: 16 May 2014

    Cross-site scripting (XSS) vulnerability in dspStats.php in PowerPhlogger 2.2.5 allows remote attackers to inject arbitrary web script or HTML via the edit parameter.

    Source:MustLive
    Published:10 Dec 2009
    9.3
    Critical

    CVE-2009-4251

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Jasc Paint Shop Pro 8.10 (aka Corel Paint Shop Pro) allows user-assisted remote attackers to execute arbitrary code via a crafted PNG file. NOTE: this might be the same issue as CVE-2007-2366.

    Source:fl0 fl0w
    Published:10 Dec 2009
    4.3
    Medium

    CVE-2009-4250

    Last Modified: 8 Dec 2016

    Multiple cross-site scripting (XSS) vulnerabilities in CutePHP CuteNews 1.4.6 and UTF-8 CuteNews before 8b allow remote attackers to inject arbitrary web script or HTML via (1) the result parameter to register.php; (2) the user parameter to search.php; the (3) cat_msg, (4) source_msg, (5) postponed_selected, (6) unapproved_selected, and (7) news_per_page parameters in a list action to the editnews module of index.php; and (8) the link tag in news comments. NOTE: some of the vulnerabilities require register_globals to be enabled and/or magic_quotes_gpc to be disabled.

    Source:Andrew Horton
    Published:10 Dec 2009
    2.6
    Low

    CVE-2009-4249

    Last Modified: 14 May 2014

    Multiple cross-site scripting (XSS) vulnerabilities in CutePHP CuteNews 1.4.6, when register_globals is enabled and magic_quotes_gpc is disabled, allow remote attackers to inject arbitrary web script or HTML via the (1) lastusername and (2) mod parameters to index.php; and (3) the title parameter to search.php.

    Source:Andrew Horton
    Published:10 Dec 2009
    6.5
    Medium

    CVE-2009-4238

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in TestLink before 1.8.5 allow remote authenticated users to execute arbitrary SQL commands via (1) the Test Case ID field to lib/general/navBar.php or (2) the logLevel parameter to lib/events/eventviewer.php.

    Source:Core Security
    Published:10 Dec 2009
    3.5
    Low

    CVE-2009-4237

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in TestLink before 1.8.5 allow remote attackers to inject arbitrary web script or HTML via (1) the req parameter to login.php, and allow remote authenticated users to inject arbitrary web script or HTML via (2) the key parameter to lib/general/staticPage.php, (3) the tableName parameter to lib/attachments/attachmentupload.php, or the (4) startDate, (5) endDate, or (6) logLevel parameter to lib/events/eventviewer.php; (7) the search_notes_string parameter to lib/results/resultsMoreBuilds_buildReport.php; or the (8) expected_results, (9) name, (10) steps, or (11) summary parameter in a find action to lib/testcases/searchData.php, related to lib/functions/database.class.php.

    Source:Core Security
    Published:10 Dec 2009
    4.3
    Medium

    CVE-2009-4234

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in loginpages/error_user.shtml on the Micronet Network Access Controller SP1910 allows remote attackers to inject arbitrary web script or HTML via the msg parameter.

    Source:K053
    Published:8 Dec 2009
    7.5
    High

    CVE-2009-4231

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in as/lib/plugins.php in SweetRice 0.5.3 and earlier allows remote attackers to include and execute arbitrary local files via .. (dot dot) in the plugin parameter.

    Source:cr4wl3r
    Published:8 Dec 2009
    7.5
    High

    CVE-2009-4229

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in ActiveWebSoftwares Active Bids allow remote attackers to execute arbitrary SQL commands via (1) the catid parameter in the PATH_INFO to the default URI or (2) the catid parameter to default.asp. NOTE: this might overlap CVE-2009-0429.3. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Hussin X
    Published:8 Dec 2009
    6.8
    Medium

    CVE-2009-4227

    Last Modified: 16 May 2014

    Stack-based buffer overflow in the read_1_3_textobject function in f_readold.c in Xfig 3.2.5b and earlier, and in the read_textobject function in read1_3.c in fig2dev in Transfig 3.2.5a and earlier, allows remote attackers to execute arbitrary code via a long string in a malformed .fig file that uses the 1.3 file format. NOTE: some of these details are obtained from third party information.

    Source:pedamachephepto
    Published:3 Dec 2009
    9.3
    Critical

    CVE-2009-4225

    Last Modified: 10 Mar 2011

    Stack-based buffer overflow in the PestPatrol ActiveX control (ppctl.dll) 5.6.7.9 in CA eTrust PestPatrol allows remote attackers to execute arbitrary code via a long argument to the Initialize method.

    Source:Metasploit
    Published:8 Dec 2009
    6.8
    Medium

    CVE-2009-4224

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in SweetRice 0.5.4, 0.5.3, and earlier allow remote attackers to execute arbitrary PHP code via a URL in the root_dir parameter to (1) _plugin/subscriber/inc/post.php and (2) as/lib/news_modify.php.

    Source:cr4wl3r
    Published:7 Dec 2009
    7.5
    High

    CVE-2009-4223

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in adm/krgourl.php in KR-Web 1.1b2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter.

    Source:cr4wl3r
    Published:7 Dec 2009
    7.5
    High

    CVE-2009-4222

    Last Modified: 23 Apr 2026

    phpBazar 2.1.1fix and earlier does not require administrative authentication for admin/admin.php, which allows remote attackers to obtain access to the admin control panel via a direct request.

    Source:kurdish hackers team
    Published:7 Dec 2009
    7.5
    High

    CVE-2009-4221

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in classified.php in phpBazar 2.1.1fix and earlier allows remote attackers to execute arbitrary SQL commands via the catid parameter, a different vector than CVE-2008-3767.

    Source:MizoZ
    Published:7 Dec 2009
    7.5
    High

    CVE-2009-4220

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/classes/pctemplate.php in PointComma 3.8b2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the pcConfig[smartyPath] parameter.

    Source:cr4wl3r
    Published:7 Dec 2009
    9.3
    Critical

    CVE-2009-4219

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the MYACTIVEX.MyActiveXCtrl.1 ActiveX control in MyActiveX.ocx 1.4.8.0 in Haihaisoft Universal Player allows remote attackers to execute arbitrary code via a long URL property value. NOTE: some of these details are obtained from third party information.

    Source:shinnai
    Published:7 Dec 2009
    7.5
    High

    CVE-2009-4218

    Last Modified: 15 May 2014

    Multiple SQL injection vulnerabilities in files/login.asp in JiRo's Banner System eXperience (JBSX) allow remote attackers to execute arbitrary SQL commands via the (1) admin or (2) password field, a related issue to CVE-2007-6091. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:blackenedsecurity
    Published:7 Dec 2009
    7.5
    High

    CVE-2009-4217

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the Itamar Elharar MusicGallery (com_musicgallery) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an itempage action to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Don Tukulesto
    Published:7 Dec 2009
    9.3
    Critical

    CVE-2009-4216

    Last Modified: 16 May 2014

    Directory traversal vulnerability in funzioni/lib/menulast.php in klinza professional cms 5.0.1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the LANG parameter.

    Source:klinza
    Published:7 Dec 2009
    4.3
    Medium

    CVE-2009-4209

    Last Modified: 15 Dec 2016

    Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in moziloCMS 1.11.1 allow remote attackers to inject arbitrary web script or HTML via the (1) cat and (2) file parameters in an editsite action, different vectors than CVE-2008-6127 and CVE-2009-1367.

    Source:SirGod
    Published:4 Dec 2009
    7.5
    High

    CVE-2009-4208

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the os_news module in Open-school (OS) 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action to index.php.

    Source:OzX
    Published:4 Dec 2009
    7.5
    High

    CVE-2009-4206

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in admin.link.modify.php in Million Dollar Text Links 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:Qabandi
    Published:4 Dec 2009
    7.5
    High

    CVE-2009-4205

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in admin.php in Flashlight Free Edition allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the action parameter.

    Source:K4m1k451
    Published:4 Dec 2009
    7.5
    High

    CVE-2009-4204

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in read.php in Flashlight Free Edition allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:K4m1k451
    Published:4 Dec 2009
    7.5
    High

    CVE-2009-4203

    Last Modified: 2 Jan 2017

    Multiple SQL injection vulnerabilities in admin/aclass/admin_func.php in Arab Portal 2.2 allow remote attackers to execute arbitrary SQL commands via the (1) X-Forwarded-For or (2) Client-IP HTTP header in a request to the default URI under admin/.

    Source:sniper code
    Published:4 Dec 2009
    7.5
    High

    CVE-2009-4202

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the Omilen Photo Gallery (com_omphotogallery) component Beta 0.5 for Joomla! allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the controller parameter to index.php.

    Source:ByALBAYX
    Published:4 Dec 2009
    7.5
    High

    CVE-2009-4200

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the Seminar (com_seminar) component 1.28 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a View_seminar action to index.php.

    Source:ThE g0bL!N
    Published:4 Dec 2009
    6.8
    Medium

    CVE-2009-4199

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in the Mambo Resident (aka Mos Res or com_mosres) component 1.0f for Mambo and Joomla!, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) property_uid parameter in a viewproperty action to index.php and the (2) regID parameter in a showregion action to index.php.

    Source:Chip d3 bi0s
    Published:4 Dec 2009
    6.5
    Medium

    CVE-2009-4198

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in my_orders.php in MyMiniBill allows remote authenticated users to execute arbitrary SQL commands via the orderid parameter in a status action.

    Source:ThE g0bL!N
    Published:4 Dec 2009
    4.7
    Medium

    CVE-2009-4197

    Last Modified: 23 Apr 2026

    rpwizPppoe.htm in Huawei MT882 V100R002B020 ARG-T running firmware 3.7.9.98 contains a form that does not disable the autocomplete setting for the password parameter, which makes it easier for local users or physically proximate attackers to obtain the password from web browsers that support autocomplete.

    Source:DecodeX01
    Published:4 Dec 2009
    4.3
    Medium

    CVE-2009-4196

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in multiple scripts in Forms/ in Huawei MT882 V100R002B020 ARG-T running firmware 3.7.9.98 allow remote attackers to inject arbitrary web script or HTML via the (1) BackButton parameter to error_1; (2) wzConnFlag parameter to fresh_pppoe_1; (3) diag_pppindex_argen and (4) DiagStartFlag parameters to rpDiag_argen_1; (5) wzdmz_active and (6) wzdmzHostIP parameters to rpNATdmz_argen_1; (7) wzVIRTUALSVR_endPort, (8) wzVIRTUALSVR_endPortLocal, (9) wzVIRTUALSVR_IndexFlag, (10) wzVIRTUALSVR_localIP, (11) wzVIRTUALSVR_startPort, and (12) wzVIRTUALSVR_startPortLocal parameters to rpNATvirsvr_argen_1; (13) Connect_DialFlag, (14) Connect_DialHidden, and (15) Connect_Flag parameters to rpStatus_argen_1; (16) Telephone_select, and (17) wzFirstFlag parameters to rpwizard_1; and (18) wzConnectFlag parameter to rpwizPppoe_1.

    Source:DecodeX01
    Published:4 Dec 2009
    9.3
    Critical

    CVE-2009-4195

    Last Modified: 23 Apr 2026

    Buffer overflow in Adobe Illustrator CS4 14.0.0, CS3 13.0.3 and earlier, and CS3 13.0.0 allows remote attackers to execute arbitrary code via a long DSC comment in an Encapsulated PostScript (.eps) file. NOTE: some of these details are obtained from third party information.

    Source:pyrokinesis
    Published:4 Dec 2009
    8.1
    High

    CVE-2009-4194

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in Golden FTP Server 4.30 Free and Professional, 4.50, and possibly other versions allows remote authenticated users to delete arbitrary files via a .. (dot dot) in the DELE command. NOTE: some of these details are obtained from third party information.

    Source:sharpe
    Published:3 Dec 2009
    5
    Medium

    CVE-2009-4192

    Last Modified: 9 May 2014

    Directory traversal vulnerability in dialog/file_manager.php in Interspire Knowledge Manager 5 allows remote attackers to read arbitrary files via a .. (dot dot) in the p parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Infected Web
    Published:3 Dec 2009
    10
    Critical

    CVE-2009-4189

    Last Modified: 27 Oct 2016

    HP Operations Manager has a default password of OvW*busr1 for the ovwebusr account, which allows remote attackers to execute arbitrary code via a session that uses the manager role to conduct unrestricted file upload attacks against the /manager servlet in the Tomcat servlet container. NOTE: this might overlap CVE-2009-3099 and CVE-2009-3843.

    Source:Metasploit
    Published:3 Dec 2009
    10
    Critical

    CVE-2009-4188

    Last Modified: 27 Oct 2016

    HP Operations Dashboard has a default password of j2deployer for the j2deployer account, which allows remote attackers to execute arbitrary code via a session that uses the manager role to conduct unrestricted file upload attacks against the /manager servlet in the Tomcat servlet container. NOTE: this might overlap CVE-2009-3098.

    Source:Metasploit
    Published:3 Dec 2009
    9.3
    Critical

    CVE-2009-4186

    Last Modified: 1 Feb 2017

    Stack consumption vulnerability in Apple Safari 4.0.3 on Windows allows remote attackers to cause a denial of service (application crash) via a long URI value (aka url) in the Cascading Style Sheets (CSS) background property.

    Source:Jeremy Brown
    Published:3 Dec 2009
    10
    Critical

    CVE-2009-4179

    Last Modified: 27 Oct 2016

    Stack-based buffer overflow in ovalarm.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a long HTTP Accept-Language header in an OVABverbose action.

    Source:Metasploit
    Published:10 Dec 2009
    10
    Critical

    CVE-2009-4178

    Last Modified: 9 Mar 2011

    Heap-based buffer overflow in OvWebHelp.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a long Topic parameter.

    Source:Metasploit
    Published:10 Dec 2009
    5
    Medium

    CVE-2009-4175

    Last Modified: 8 Dec 2016

    CutePHP CuteNews 1.4.6 and UTF-8 CuteNews before 8b allows remote attackers to obtain sensitive information via an invalid date value in the from_date_day parameter to search.php, which reveals the installation path in an error message.

    Source:Andrew Horton
    Published:2 Dec 2009
    6
    Medium

    CVE-2009-4174

    Last Modified: 14 May 2014

    The editnews module in CutePHP CuteNews 1.4.6 and UTF-8 CuteNews before 8b, when magic_quotes_gpc is disabled, allows remote authenticated users with Journalist or Editor access to bypass administrative moderation and edit previously submitted articles via a modified id parameter in a doeditnews action.

    Source:Andrew Horton
    Published:2 Dec 2009
    6.8
    Medium

    CVE-2009-4173

    Last Modified: 14 May 2014

    Cross-site request forgery (CSRF) vulnerability in CutePHP CuteNews 1.4.6 and UTF-8 CuteNews before 8b allows remote attackers to hijack the authentication of administrators for requests that create new users, including a new administrator, via an adduser action in the editusers module in index.php.

    Source:Andrew Horton
    Published:2 Dec 2009
    2.6
    Low

    CVE-2009-4172

    Last Modified: 14 May 2014

    Cross-site scripting (XSS) vulnerability in index.php in CutePHP CuteNews 1.4.6 and UTF-8 CuteNews 8 and 8b, when magic_quotes_gpc is disabled, allows remote attackers to inject arbitrary web script or HTML via the body of a news article in an addnews action.

    Source:Andrew Horton
    Published:2 Dec 2009
    4.3
    Medium

    CVE-2009-4171

    Last Modified: 14 May 2014

    An ActiveX control in YahooBridgeLib.dll for Yahoo! Messenger 9.0.0.2162, and possibly other 9.0 versions, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by calling the RegisterMe method with a long argument.

    Source:HACKATTACK
    Published:2 Dec 2009
    5
    Medium

    CVE-2009-4170

    Last Modified: 23 Apr 2026

    WP-Cumulus Plug-in 1.20 for WordPress, and possibly other versions, allows remote attackers to obtain sensitive information via a crafted request to wp-cumulus.php, probably without parameters, which reveals the installation path in an error message.

    Source:MustLive
    Published:2 Dec 2009