10
    Critical

    CVE-2009-3711

    Last Modified: 29 Sept 2016

    Stack-based buffer overflow in the h_handlepeer function in http.cpp in httpdx 1.4, and possibly 1.4.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request.

    Source:Metasploit
    Published:16 Oct 2009
    10
    Critical

    CVE-2009-3710

    Last Modified: 29 Oct 2016

    RioRey RIOS 4.6.6 and 4.7.0 uses an undocumented, hard-coded username (dbadmin) and password (sq!us3r) for an SSH tunnel, which allows remote attackers to gain privileges via port 8022.

    Source:Marek Kroemeke
    Published:16 Oct 2009
    9.3
    Critical

    CVE-2009-3709

    Last Modified: 12 Nov 2010

    Stack-based buffer overflow in the Meta Content Optimizer in Konae Technologies Alleycode HTML Editor 2.21 allows user-assisted remote attackers to execute arbitrary code via a long value in a TITLE tag.

    Source:Rafael Sousa
    Published:16 Oct 2009
    9.3
    Critical

    CVE-2009-3708

    Last Modified: 12 Nov 2010

    Stack-based buffer overflow in the Meta Content Optimizer in Konae Technologies Alleycode HTML Editor 2.21 allows user-assisted remote attackers to execute arbitrary code via a long value in a (1) description or (2) keyword META tag. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Rafael Sousa
    Published:16 Oct 2009
    5
    Medium

    CVE-2009-3707

    Last Modified: 7 Oct 2017

    VMware Authentication Daemon 1.0 in vmware-authd.exe in the VMware Authorization Service in VMware Workstation 7.0 before 7.0.1 build 227600 and 6.5.x before 6.5.4 build 246459, VMware Player 3.0 before 3.0.1 build 227600 and 2.5.x before 2.5.4 build 246459, VMware ACE 2.6 before 2.6.1 build 227600 and 2.5.x before 2.5.4 build 246459, and VMware Server 2.x allows remote attackers to cause a denial of service (process crash) via a \x25\xFF sequence in the USER and PASS commands, related to a "format string DoS" issue. NOTE: some of these details are obtained from third party information.

    Source:shinnai
    Published:16 Oct 2009
    7.5
    High

    CVE-2009-3705

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in debugger.php in Achievo before 1.4.0 allows remote attackers to execute arbitrary PHP code via a URL in the config_atkroot parameter.

    Source:M3NW5
    Published:16 Oct 2009
    5
    Medium

    CVE-2009-3704

    Last Modified: 23 Apr 2026

    ZoIPer 2.22, and possibly other versions before 2.24 Library 5324, allows remote attackers to cause a denial of service (crash) via a SIP INVITE request with an empty Call-Info header.

    Source:Tomer Bitton
    Published:16 Oct 2009
    7.5
    High

    CVE-2009-3703

    Last Modified: 26 Jul 2017

    Multiple SQL injection vulnerabilities in the WP-Forum plugin before 2.4 for WordPress allow remote attackers to execute arbitrary SQL commands via (1) the search_max parameter in a search action to the default URI, related to wpf.class.php; (2) the forum parameter to an unspecified component, related to wpf.class.php; (3) the topic parameter in a viewforum action to the default URI, related to the remove_topic function in wpf.class.php; or the id parameter in a (4) editpost or (5) viewtopic action to the default URI, related to wpf-post.php.

    Source:Juan Galiana Lara
    Published:18 Dec 2009
    7.5
    High

    CVE-2009-3702

    Last Modified: 20 May 2014

    Multiple absolute path traversal vulnerabilities in PHP-Calendar 1.1 allow remote attackers to include and execute arbitrary local files via a full pathname in the configfile parameter to (1) update08.php or (2) update10.php. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL.

    Source:Juan Galiana Lara
    Published:22 Dec 2009
    4.3
    Medium

    CVE-2009-3701

    Last Modified: 18 May 2014

    Multiple cross-site scripting (XSS) vulnerabilities in the administration interface in Horde Application Framework before 3.3.6, Horde Groupware before 1.2.5, and Horde Groupware Webmail Edition before 1.2.5 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) phpshell.php, (2) cmdshell.php, or (3) sqlshell.php in admin/, related to the PHP_SELF variable.

    Source:Juan Galiana Lara
    Published:16 Dec 2009
    10
    Critical

    CVE-2009-3699

    Last Modified: 6 Mar 2011

    Stack-based buffer overflow in libcsa.a (aka the calendar daemon library) in IBM AIX 5.x through 5.3.10 and 6.x through 6.1.3, and VIOS 2.1 and earlier, allows remote attackers to execute arbitrary code via a long XDR string in the first argument to procedure 21 of rpc.cmsd.

    Source:Metasploit
    Published:15 Oct 2009
    6.8
    Medium

    CVE-2009-3694

    Last Modified: 7 Oct 2017

    Directory traversal vulnerability in config/config.php in ezRecipe-Zee 91, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cfg[prePath] parameter.

    Source:kaMtiEz
    Published:13 Oct 2009
    9.3
    Critical

    CVE-2009-3693

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the Persits.XUpload.2 ActiveX control (XUpload.ocx) in HP LoadRunner 9.5 allows remote attackers to create arbitrary files via \.. (backwards slash dot dot) sequences in the third argument to the MakeHttpRequest method.

    Source:pyrokinesis
    Published:13 Oct 2009
    7.2
    High

    CVE-2009-3692

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the VBoxNetAdpCtl configuration tool in Sun VirtualBox 3.0.x before 3.0.8 on Solaris x86, Linux, and Mac OS X allows local users to gain privileges via unknown vectors.

    Source:prdelka
    Published:13 Oct 2009
    9.3
    Critical

    CVE-2009-3691

    Last Modified: 23 Apr 2026

    Multiple integer overflows in setnet32.exe 3.50.0.13752 in IBM Informix Client SDK 3.0 and 3.50 and Informix Connect Runtime 3.x allow remote attackers to execute arbitrary code via a .nfx file with a crafted (1) HostSize, and possibly (2) ProtoSize and (3) ServerSize, field that triggers a stack-based buffer overflow involving a crafted HostList field. NOTE: some of these details are obtained from third party information.

    Source:bruiser
    Published:13 Oct 2009
    9.3
    Critical

    CVE-2009-3672

    Last Modified: 10 Mar 2011

    Microsoft Internet Explorer 6 and 7 does not properly handle objects in memory that (1) were not properly initialized or (2) are deleted, which allows remote attackers to execute arbitrary code via vectors involving a call to the getElementsByTagName method for the STYLE tag name, selection of the single element in the returned list, and a change to the outerHTML property of this element, related to Cascading Style Sheets (CSS) and mshtml.dll, aka "HTML Object Memory Corruption Vulnerability." NOTE: some of these details are obtained from third party information. NOTE: this issue was originally assigned CVE-2009-4054, but Microsoft assigned a duplicate identifier of CVE-2009-3672. CVE consumers should use this identifier instead of CVE-2009-4054.

    Source:Metasploit
    Published:2 Dec 2009
    9.3
    Critical

    CVE-2009-3670

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in KSP Sound Player 2009 R2 and R2.1 allows remote attackers to execute arbitrary code via a long string in a .m3u playlist file.

    Source:hack4love
    Published:11 Oct 2009
    7.5
    High

    CVE-2009-3669

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the foobla Suggestions (com_foobla_suggestions) component 1.5.11 for Joomla! allows remote attackers to execute arbitrary SQL commands via the idea_id parameter to index.php.

    Source:Chip d3 bi0s
    Published:11 Oct 2009
    7.5
    High

    CVE-2009-3667

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in admin/index.php in AdsDX 3.05 allows remote attackers to execute arbitrary SQL commands via the Username.

    Source:snakespc
    Published:11 Oct 2009
    4.3
    Medium

    CVE-2009-3666

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Nullam Blog 0.1.2 allows remote attackers to inject arbitrary web script or HTML via the e parameter in an error action.

    Source:Salvatore Fresta
    Published:11 Oct 2009
    7.5
    High

    CVE-2009-3665

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in index.php in Nullam Blog 0.1.2 allow remote attackers to execute arbitrary SQL commands via the (1) i parameter or (2) v parameters in a register action.

    Source:Salvatore Fresta
    Published:11 Oct 2009
    7.5
    High

    CVE-2009-3664

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in index.php in Nullam Blog 0.1.2 allow remote attackers to include or execute arbitrary files via a .. (dot dot) in the (1) p and (2) s parameters.

    Source:Salvatore Fresta
    Published:11 Oct 2009
    10
    Critical

    CVE-2009-3663

    Last Modified: 29 Sept 2016

    Format string vulnerability in the h_readrequest function in http.c in httpdx Web Server 1.4 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in the Host header.

    Source:Pankaj Kohli
    Published:11 Oct 2009
    5
    Medium

    CVE-2009-3662

    Last Modified: 7 May 2014

    FileCopa FTP Server 5.01 allows remote attackers to cause a denial of service (server hang) via a large number of crafted NOOP commands.

    Source:Asheesh kumar Mani Tripathi
    Published:11 Oct 2009
    6.8
    Medium

    CVE-2009-3661

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in the DJ-Catalog (com_djcatalog) component for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in a showItem action and (2) cid parameter in a show action to index.php.

    Source:Chip d3 bi0s
    Published:11 Oct 2009
    6.8
    Medium

    CVE-2009-3660

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in libraries/database.php in Efront 3.5.4 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the path parameter. NOTE: this is only a vulnerability when the administrator does not follow recommendations in the product's security documentation.

    Source:cr4wl3r
    Published:11 Oct 2009
    7.5
    High

    CVE-2009-3659

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in file/stats.php in BS Counter 2.5.3 allows remote attackers to execute arbitrary SQL commands via the page parameter.

    Source:Bgh7
    Published:11 Oct 2009
    8.8
    High

    CVE-2009-3658

    Last Modified: 23 Apr 2026

    Use-after-free vulnerability in the Sb.SuperBuddy.1 ActiveX control (sb.dll) in America Online (AOL) 9.5.0.1 allows remote attackers to trigger memory corruption or possibly execute arbitrary code via a malformed argument to the SetSuperBuddy method.

    Source:Trotzkista
    Published:9 Oct 2009
    4.3
    Medium

    CVE-2009-3647

    Last Modified: 7 May 2014

    Cross-site scripting (XSS) vulnerability in emaullinks.php in YABSoft Mega File Hosting Script (aka MFH or MFHS) 1.2 allows remote attackers to inject arbitrary web script or HTML via the moudi parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Moudi
    Published:9 Oct 2009
    5
    Medium

    CVE-2009-3646

    Last Modified: 23 Apr 2026

    InterVations NaviCOPA Web Server 3.01 allows remote attackers to obtain the source code for a web page via an HTTP request with the addition of ::$DATA after the HTML file name.

    Source:Dr_IDE
    Published:9 Oct 2009
    7.5
    High

    CVE-2009-3645

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the JoomlaCache CB Resume Builder (com_cbresumebuilder) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the group_id parameter in a group_members action to index.php.

    Source:kaMtiEz
    Published:9 Oct 2009
    7.5
    High

    CVE-2009-3644

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the Soundset (com_soundset) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat_id parameter to index.php.

    Source:kaMtiEz
    Published:9 Oct 2009
    5
    Medium

    CVE-2009-3643

    Last Modified: 23 Apr 2026

    Dxmsoft XM Easy Personal FTP Server 5.8.0 allows remote attackers to cause a denial of service via a long argument to the (1) LIST and (2) NLST commands, a differnt issue than CVE-2008-5626 and CVE-2006-5728.

    Source:zhangmc
    Published:9 Oct 2009
    7.5
    High

    CVE-2009-3642

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in the Call Logging feature in FrontRange HEAT 8.01 allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.

    Source:0 0
    Published:9 Oct 2009
    4.3
    Medium

    CVE-2009-3641

    Last Modified: 12 May 2014

    Snort before 2.8.5.1, when the -v option is enabled, allows remote attackers to cause a denial of service (application crash) via a crafted IPv6 packet that uses the (1) TCP or (2) ICMP protocol.

    Source:laurent gaffie
    Published:22 Oct 2009
    7.5
    High

    CVE-2009-3625

    Last Modified: 12 May 2014

    Directory traversal vulnerability in www/index.php in Sahana 0.6.2.2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the mod parameter.

    Source:Greg Miernicki
    Published:19 Oct 2009
    5.5
    Medium

    CVE-2009-3621

    Last Modified: 23 Apr 2026

    net/unix/af_unix.c in the Linux kernel 2.6.31.4 and earlier allows local users to cause a denial of service (system hang) by creating an abstract-namespace AF_UNIX listening socket, performing a shutdown operation on this socket, and then performing a series of connect operations to this socket.

    Source:Tomoki Sekiyama
    Published:19 Oct 2009
    7.8
    High

    CVE-2009-3613

    Last Modified: 11 May 2014

    The swiotlb functionality in the r8169 driver in drivers/net/r8169.c in the Linux kernel before 2.6.27.22 allows remote attackers to cause a denial of service (IOMMU space exhaustion and system crash) by using jumbo frames for a large amount of network traffic, as demonstrated by a flood ping.

    Source:Alistair Strachan
    Published:28 Nov 2007
    4.3
    Medium

    CVE-2009-3601

    Last Modified: 26 Sept 2014

    Cross-site scripting (XSS) vulnerability in demo_page.php in Scriptsez Ultimate Poll allows remote attackers to inject arbitrary web script or HTML via the clr parameter in a vote action.

    Source:Moudi
    Published:8 Oct 2009
    4.3
    Medium

    CVE-2009-3599

    Last Modified: 20 Sept 2014

    Cross-site scripting (XSS) vulnerability in single_winner1.php in HUBScript 1.0 allows remote attackers to inject arbitrary web script or HTML via the bid_id parameter.

    Source:Moudi
    Published:8 Oct 2009
    4.3
    Medium

    CVE-2009-3598

    Last Modified: 3 Oct 2014

    Cross-site scripting (XSS) vulnerability in survey_result.php in eCardMAX FormXP 2007 allows remote attackers to inject arbitrary web script or HTML via the sid parameter.

    Source:Moudi
    Published:8 Oct 2009
    5
    Medium

    CVE-2009-3597

    Last Modified: 23 Apr 2026

    Digitaldesign CMS 0.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for autoconfig.dd.

    Source:darkjoker
    Published:8 Oct 2009
    7.5
    High

    CVE-2009-3596

    Last Modified: 23 Apr 2026

    JoxTechnology Ajox Poll does not properly restrict access to admin/managepoll.php, which allows remote attackers to bypass authentication and gain administrative access via a direct request.

    Source:SirGod
    Published:8 Oct 2009
    7.5
    High

    CVE-2009-3595

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in results.php in VS PANEL 7.5.5 allows remote attackers to execute arbitrary SQL commands via the Cat_ID parameter, a different vector than CVE-2009-3590.

    Source:C0D3R-Dz
    Published:8 Oct 2009
    4.3
    Medium

    CVE-2009-3593

    Last Modified: 20 Sept 2014

    Multiple cross-site scripting (XSS) vulnerabilities in Freelancers 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to placebid.php and (2) jobid parameter to post_resume.php.

    Source:Moudi
    Published:8 Oct 2009
    4.3
    Medium

    CVE-2009-3592

    Last Modified: 9 May 2014

    Cross-site scripting (XSS) vulnerability in customer/home.php in Qualiteam X-Cart allows remote attackers to inject arbitrary web script or HTML via the email parameter in a subscribed action, a different vector than CVE-2005-1823.

    Source:Paulo Santos
    Published:8 Oct 2009
    5
    Medium

    CVE-2009-3591

    Last Modified: 9 May 2014

    Dopewars 1.5.12 allows remote attackers to cause a denial of service (segmentation fault) via a REQUESTJET message with an invalid location.

    Source:Doug Prostko
    Published:6 Oct 2009
    7.5
    High

    CVE-2009-3590

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in showcat.php in VS PANEL 7.3.6 allows remote attackers to execute arbitrary SQL commands via the Cat_ID parameter.

    Source:Player
    Published:8 Oct 2009
    7.5
    High

    CVE-2009-3586

    Last Modified: 23 Apr 2026

    Off-by-one error in src/http.c in CoreHTTP 0.5.3.1 and earlier allows remote attackers to cause a denial of service or possibly execute arbitrary code via an HTTP request with a long first line that triggers a buffer overflow. NOTE: this vulnerability reportedly exists because of an incorrect fix for CVE-2007-4060.

    Source:Patroklos Argyroudis
    Published:8 Dec 2009
    9.3
    Critical

    CVE-2009-3578

    Last Modified: 23 Apr 2026

    Autodesk Maya 8.0, 8.5, 2008, 2009, and 2010 and Alias Wavefront Maya 6.5 and 7.0 allow remote attackers to execute arbitrary code via a (1) .ma or (2) .mb file that uses the Maya Embedded Language (MEL) python command or unspecified other MEL commands, related to "Script Nodes."

    Source:Core Security
    Published:24 Nov 2009