7.5
    High

    CVE-2009-2265

    Last Modified: 24 Jun 2021

    Multiple directory traversal vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to create executable files in arbitrary directories via directory traversal sequences in the input to unspecified connector modules, as exploited in the wild for remote code execution in July 2009, related to the file browser and the editor/filemanager/connectors/ directory.

    Source:Pergyz
    Published:3 Jul 2009
    7.5
    High

    CVE-2009-2263

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in Awesome PHP Mega File Manager 1.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL.

    Source:SirGod
    Published:30 Jun 2009
    9.3
    Critical

    CVE-2009-2261

    Last Modified: 27 Oct 2016

    PeaZIP 2.6.1, 2.5.1, and earlier on Windows allows user-assisted remote attackers to execute arbitrary commands via a .zip archive with a .txt file whose name contains | (pipe) characters and a command.

    Source:Metasploit
    Published:30 Jun 2009
    Low

    CVE-2009-2259

    Last Modified: 7 Dec 2016

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-2608. Reason: This candidate is a duplicate of CVE-2009-2608. Notes: All CVE users should reference CVE-2009-2608 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:YEnH4ckEr
    Published:30 Jun 2009
    7.8
    High

    CVE-2009-2258

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in cgi-bin/webcm in the administrative web interface on the Netgear DG632 with firmware 3.4.0_ap allows remote attackers to list arbitrary directories via a .. (dot dot) in the nextpage parameter.

    Source:Tom Neaves
    Published:30 Jun 2009
    7.8
    High

    CVE-2009-2257

    Last Modified: 23 Apr 2026

    The administrative web interface on the Netgear DG632 with firmware 3.4.0_ap allows remote attackers to bypass authentication via a direct request to (1) gateway/commands/saveconfig.html, and (2) stattbl.htm, (3) modemmenu.htm, (4) onload.htm, (5) form.css, (6) utility.js, and possibly (7) indextop.htm in html/.

    Source:Tom Neaves
    Published:30 Jun 2009
    7.8
    High

    CVE-2009-2256

    Last Modified: 23 Apr 2026

    The administrative web interface on the Netgear DG632 with firmware 3.4.0_ap allows remote attackers to cause a denial of service (web outage) via an HTTP POST request to cgi-bin/firmwarecfg.

    Source:Tom Neaves
    Published:30 Jun 2009
    6.8
    Medium

    CVE-2009-2255

    Last Modified: 23 Apr 2026

    Zen Cart 1.3.8a, 1.3.8, and earlier does not require administrative authentication for admin/record_company.php, which allows remote attackers to execute arbitrary code by uploading a .php file via the record_company_image parameter in conjunction with a PATH_INFO of password_forgotten.php, then accessing this file via a direct request to the file in images/.

    Source:BlackH
    Published:30 Jun 2009
    7.5
    High

    CVE-2009-2254

    Last Modified: 23 Apr 2026

    Zen Cart 1.3.8a, 1.3.8, and earlier does not require administrative authentication for admin/sqlpatch.php, which allows remote attackers to execute arbitrary SQL commands via the query_string parameter in an execute action, in conjunction with a PATH_INFO of password_forgotten.php, related to a "SQL Execution" issue.

    Source:BlackH
    Published:30 Jun 2009
    7.5
    High

    CVE-2009-2243

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in active_appointments.asp in ASP Inline Corporate Calendar allows remote attackers to execute arbitrary SQL commands via the sortby parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Bl@ckbe@rD
    Published:27 Jun 2009
    6.8
    Medium

    CVE-2009-2242

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in active_appointments.asp in ASP Inline Corporate Calendar allows remote attackers to execute arbitrary SQL commands via the order parameter.

    Source:Bl@ckbe@rD
    Published:27 Jun 2009
    4.3
    Medium

    CVE-2009-2241

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.asp in ASP Inline Corporate Calendar allows remote attackers to inject arbitrary web script or HTML via the keyword parameter.

    Source:Bl@ckbe@rD
    Published:27 Jun 2009
    7.5
    High

    CVE-2009-2239

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the (1) casinobase (com_casinobase), (2) casino_blackjack (com_casino_blackjack), and (3) casino_videopoker (com_casino_videopoker) components 0.3.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.php.

    Source:ByALBAYX
    Published:27 Jun 2009
    6.8
    Medium

    CVE-2009-2238

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in includes/shared_scripts/wysiwyg_editor/assetmanager/assetmanager.asp in DMXReady Registration Manager 1.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in assets/webblogmanager.

    Source:Securitylab.ir
    Published:27 Jun 2009
    7.5
    High

    CVE-2009-2236

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in yad-admin/login.php in Your Article Directory allows remote attackers to execute arbitrary SQL commands via the txtAdminEmail parameter. NOTE: some of these details are obtained from third party information.

    Source:Hakxer
    Published:27 Jun 2009
    7.5
    High

    CVE-2009-2235

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in page.php in Your Articles Directory allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:ThE g0bL!N
    Published:27 Jun 2009
    7.5
    High

    CVE-2009-2234

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in admin.php in VICIDIAL Call Center Suite 2.0.5-173 allow remote attackers to execute arbitrary SQL commands via the (1) Username parameter ($PHP_AUTH_USER) and (2) Password parameter ($PHP_AUTH_PW).

    Source:Striker7
    Published:27 Jun 2009
    7.5
    High

    CVE-2009-2233

    Last Modified: 23 Apr 2026

    The admin interface in AWScripts.com Gallery Search Engine 1.5 allows remote attackers to bypass authentication and gain administrative access by setting the awse_logged cookie to 1.

    Source:TiGeR-Dz
    Published:26 Jun 2009
    7.5
    High

    CVE-2009-2231

    Last Modified: 23 Apr 2026

    MIDAS 1.43 allows remote attackers to bypass authentication and obtain administrative access via an admin account record in a MIDAS cookie.

    Source:HxH
    Published:26 Jun 2009
    7.5
    High

    CVE-2009-2230

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in inc/datahandlers/user.php in MyBB (aka MyBulletinBoard) before 1.4.7 allows remote authenticated users to execute arbitrary SQL commands via the birthdayprivacy parameter.

    Source:The:Paradox
    Published:26 Jun 2009
    5
    Medium

    CVE-2009-2229

    Last Modified: 13 Dec 2016

    Directory traversal vulnerability in engine.php in Kasseler CMS 1.3.5 lite allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter during a download action, a different vector than CVE-2008-3087. NOTE: some of these details are obtained from third party information.

    Source:S(r1pt
    Published:26 Jun 2009
    4.3
    Medium

    CVE-2009-2228

    Last Modified: 13 Dec 2016

    Cross-site scripting (XSS) vulnerability in engine.php in Kasseler CMS allows remote attackers to inject arbitrary web script or HTML via the url parameter in a redirect action.

    Source:S(r1pt
    Published:26 Jun 2009
    10
    Critical

    CVE-2009-2227

    Last Modified: 10 Mar 2011

    Stack-based buffer overflow in B Labs Bopup Communication Server 3.2.26.5460 allows remote attackers to execute arbitrary code via a crafted request to TCP port 19810.

    Source:Metasploit
    Published:26 Jun 2009
    9.3
    Critical

    CVE-2009-2223

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in locms/smarty.php in LightOpenCMS 0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cwd parameter. NOTE: remote file inclusion attacks may be possible.

    Source:JosS
    Published:26 Jun 2009
    5.1
    Medium

    CVE-2009-2220

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in Tribiq CMS 5.0.12c, when register_globals is enabled and magic_quotes_gpc is disabled, allow remote attackers to include and possibly execute arbitrary files via directory traversal sequences in the template_path parameter to (1) masthead.inc.php, (2) toppanel.inc.php, and (3) contact.inc.php in templates/mytribiqsite/tribiq-CL-9000/includes; and the use_template_family parameter to (4) templates/mytribiqsite/tribiq-CL-9000/includes/nlarlist_content.inc.php. NOTE: the tribal-GPL-1066/includes/header.inc.php vector is already covered by CVE-2008-4894.

    Source:CraCkEr
    Published:26 Jun 2009
    4.3
    Medium

    CVE-2009-2219

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in phpCollegeExchange 0.1.5c allow remote attackers to inject arbitrary web script or HTML via the (1) _SESSION[handle] parameter to (a) home.php, (b) books/allbooks.php, or (c) books/home.php; or the (2) home parameter to (d) i_head.php or (e) i_nav.php, or (f) allbooks.php, (g) home.php, or (h) i_nav.php in books/.

    Source:CraCkEr
    Published:25 Jun 2009
    6.8
    Medium

    CVE-2009-2218

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in phpCollegeExchange 0.1.5c, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the home parameter to (1) i_head.php, (2) i_nav.php, (3) user_new_2.php, or (4) house/myrents.php; or (5) allbooks.php, (6) home.php, or (7) mybooks.php in books/. NOTE: house/myrents.php was also separately reported as a local file inclusion issue.

    Source:CraCkEr
    Published:25 Jun 2009
    6.1
    Medium

    CVE-2009-2216

    Last Modified: 27 Apr 2014

    Cross-site scripting (XSS) vulnerability in CMD_REDIRECT in DirectAdmin 1.33.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the URI in a view=advanced request.

    Source:r0t
    Published:25 Jun 2009
    7.5
    High

    CVE-2009-2209

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in rscms_mod_newsview.php in RS-CMS 2.1 allows remote attackers to execute arbitrary SQL commands via the key parameter.

    Source:Mr.tro0oqy
    Published:24 Jun 2009
    9.3
    Critical

    CVE-2009-2195

    Last Modified: 4 May 2014

    Buffer overflow in WebKit in Apple Safari before 4.0.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted floating-point numbers.

    Source:Apple
    Published:11 Aug 2009
    5
    Medium

    CVE-2009-2184

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in forcedownload.php in Gravy Media Photo Host 1.0.8 allows remote attackers to read arbitrary files via an encoded "/" (slash) in the file parameter.

    Source:Lo$er
    Published:23 Jun 2009
    7.5
    High

    CVE-2009-2183

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in admin-files/ad.php in Campsite 3.3.0 RC1 allows remote attackers to read and possibly execute arbitrary local files via a .. (dot dot) in the GLOBALS[g_campsiteDir] parameter.

    Source:CraCkEr
    Published:23 Jun 2009
    6.8
    Medium

    CVE-2009-2182

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Campsite 3.3.0 RC1 allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[g_campsiteDir] parameter to (1) ad_popup.php, (2) camp_html.php, (3) init_content.php, (4) logout.php, (5) menu.php, and (6) set-author.php in admin-files/; (7) conf/liveuser_configuration.php; (8) include/phorum_load.php; (9) CommandProcessor.php and (10) index.php in admin-files/article_import; and (11) add.php, (12) add_move.php, (13) autopublish.php, and (14) autopublish_del.php in admin-files/articles/.

    Source:CraCkEr
    Published:23 Jun 2009
    4.3
    Medium

    CVE-2009-2181

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in admin-files/templates/list_dir.php in Campsite 3.3.0 RC1 allows remote attackers to inject arbitrary web script or HTML via the listbasedir parameter.

    Source:CraCkEr
    Published:23 Jun 2009
    5
    Medium

    CVE-2009-2180

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in upfiles/index.php in Pc4 Uploader 10.0 and earlier allow remote attackers to read arbitrary files via (1) a .. (dot dot) or (2) absolute path in the file parameter.

    Source:Qabandi
    Published:23 Jun 2009
    7.5
    High

    CVE-2009-2179

    Last Modified: 14 Dec 2016

    SQL injection vulnerability in search.php in phpDatingClub 3.7 allows remote attackers to execute arbitrary SQL commands via the sform[day] parameter.

    Source:ThE g0bL!N
    Published:23 Jun 2009
    4.3
    Medium

    CVE-2009-2178

    Last Modified: 14 Dec 2016

    Cross-site scripting (XSS) vulnerability in website.php in phpDatingClub 3.7 allows remote attackers to inject arbitrary web script or HTML via the page parameter.

    Source:ThE g0bL!N
    Published:23 Jun 2009
    6.8
    Medium

    CVE-2009-2177

    Last Modified: 23 Apr 2026

    code/display.php in fuzzylime (cms) 3.03a and earlier, when magic_quotes_gpc is disabled, allows remote attackers to conduct directory traversal attacks and overwrite arbitrary files via a "....//" (dot dot) in the s parameter, which is collapsed into a "../" value.

    Source:StAkeR
    Published:23 Jun 2009
    7.5
    High

    CVE-2009-2176

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in fuzzylime (cms) 3.03a and earlier, when magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) list parameter to code/confirm.php and the (2) template parameter to code/display.php.

    Source:StAkeR
    Published:23 Jun 2009
    5
    Medium

    CVE-2009-2174

    Last Modified: 26 Apr 2014

    GUPnP 0.12.7 allows remote attackers to cause a denial of service (crash) via an empty (1) subscription or (2) control message.

    Source:Zeeshan Ali
    Published:23 Jun 2009
    3.5
    Low

    CVE-2009-2173

    Last Modified: 23 Apr 2026

    The LAN game feature in Carom3D 5.06 allows remote authenticated users to cause a denial of service (application hang) via a crafted HTTP request to TCP port 28012.

    Source:LiquidWorm
    Published:23 Jun 2009
    4.3
    Medium

    CVE-2009-2172

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in forum/radioandtv.php in the Radio and TV Player addon for vBulletin allows remote registered users to inject arbitrary web script or HTML via the station parameter.

    Source:d3v1l
    Published:23 Jun 2009
    9.3
    Critical

    CVE-2009-2169

    Last Modified: 23 Apr 2026

    Insecure method vulnerability in the PDFVIEWER.PDFViewerCtrl.1 ActiveX control (pdfviewer.ocx) in Edraw PDF Viewer Component before 3.2.0.126 allows remote attackers to create and overwrite arbitrary files via a URL argument to the FtpConnect argument and a target filename argument to the FtpDownloadFile method. NOTE: this can be leveraged for code execution by writing to a Startup folder.

    Source:Jambalaya
    Published:22 Jun 2009
    9.8
    Critical

    CVE-2009-2168

    Last Modified: 23 Apr 2026

    cpanel/login.php in EgyPlus 7ammel (aka 7ml) 1.0.1 and earlier sends a redirect to the web browser but does not exit when the supplied credentials are incorrect, which allows remote attackers to bypass authentication by providing arbitrary username and password parameters.

    Source:Qabandi
    Published:22 Jun 2009
    6.8
    Medium

    CVE-2009-2167

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in cpanel/login.php in EgyPlus 7ammel (aka 7ml) 1.0.1 and earlier, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter.

    Source:Qabandi
    Published:22 Jun 2009
    5
    Medium

    CVE-2009-2166

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in cvs.php in OCS Inventory NG before 1.02.1 on Unix allows remote attackers to read arbitrary files via a full pathname in the log parameter.

    Source:Nico Leidecker
    Published:22 Jun 2009
    6.8
    Medium

    CVE-2009-2164

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Kjtechforce mailman beta1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the code parameter to activate.php or (2) the dest parameter to index.php.

    Source:YEnH4ckEr
    Published:22 Jun 2009
    4.3
    Medium

    CVE-2009-2163

    Last Modified: 10 Oct 2014

    Cross-site scripting (XSS) vulnerability in login/default.aspx in Sitecore CMS before 6.0.2 Update-1 090507 allows remote attackers to inject arbitrary web script or HTML via the sc_error parameter.

    Source:intern0t
    Published:22 Jun 2009
    5.1
    Medium

    CVE-2009-2161

    Last Modified: 2 Jan 2017

    Directory traversal vulnerability in backend/admin-functions.php in TorrentTrader Classic 1.09, when used on a case-insensitive web site, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the ss_uri parameter, in conjunction with a modified component name.

    Source:waraxe
    Published:22 Jun 2009
    5
    Medium

    CVE-2009-2160

    Last Modified: 2 Jan 2017

    TorrentTrader Classic 1.09 allows remote attackers to (1) obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function; and allows remote attackers to (2) obtain other potentially sensitive information via a direct request to check.php.

    Source:waraxe
    Published:22 Jun 2009