9.3
    Critical

    CVE-2009-1040

    Last Modified: 23 Apr 2026

    Buffer overflow in WinAsm Studio 5.1.5.0 allows user-assisted remote attackers to execute arbitrary code via a crafted project (.wap) file.

    Source:Stack
    Published:20 Mar 2009
    7.5
    High

    CVE-2009-1039

    Last Modified: 23 Apr 2026

    Buffer overflow in CDex 1.70b2 allows remote attackers to execute arbitrary code via a crafted Info header in an Ogg Vorbis (.ogg) file.

    Source:Nine:Situations:Group
    Published:20 Mar 2009
    6.5
    Medium

    CVE-2009-1038

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in YAP Blog 1.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) image_id parameter to comments.php, and remote authenticated administrators to execute arbitrary SQL commands via the (2) user parameter in a modif action to admin/index.php.

    Source:Alkindiii
    Published:20 Mar 2009
    7.5
    High

    CVE-2009-1033

    Last Modified: 25 Nov 2016

    SQL injection vulnerability in misc.php in DeluxeBB 1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the qorder parameter, a different vector than CVE-2005-2989 and CVE-2006-2503.

    Source:girex
    Published:20 Mar 2009
    7.5
    High

    CVE-2009-1032

    Last Modified: 29 Nov 2016

    SQL injection vulnerability in gallery_list.php in YABSoft Advanced Image Hosting (AIH) Script 2.3 allows remote attackers to execute arbitrary SQL commands via the gal parameter.

    Source:boom3rang
    Published:20 Mar 2009
    7.8
    High

    CVE-2009-1031

    Last Modified: 26 Dec 2016

    Directory traversal vulnerability in the FTP server in Rhino Software Serv-U File Server 7.0.0.1 through 7.4.0.1 allows remote attackers to create arbitrary directories via a \.. (backslash dot dot) in an MKD request.

    Source:Jonathan Salwan
    Published:20 Mar 2009
    4.3
    Medium

    CVE-2009-1030

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the choose_primary_blog function in wp-includes/wpmu-functions.php in WordPress MU (WPMU) before 2.7 allows remote attackers to inject arbitrary web script or HTML via the HTTP Host header.

    Source:Juan Galiana Lara
    Published:3 Dec 2008
    9.3
    Critical

    CVE-2009-1029

    Last Modified: 10 Mar 2011

    Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a long Date header, related to Imap.dll.

    Source:Metasploit
    Published:20 Mar 2009
    9.3
    Critical

    CVE-2009-1028

    Last Modified: 9 Jan 2011

    Stack-based buffer overflow in ediSys eZip Wizard 3.0 allows remote attackers to execute arbitrary code via a crafted .zip file.

    Source:fl0 fl0w
    Published:20 Mar 2009
    7.5
    High

    CVE-2009-1026

    Last Modified: 23 Dec 2016

    Multiple SQL injection vulnerabilities in login.php in Kim Websites 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.

    Source:Virangar Security
    Published:20 Mar 2009
    7.5
    High

    CVE-2009-1025

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in linkadmin.php in Beerwin PHPLinkAdmin 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.

    Source:SirGod
    Published:20 Mar 2009
    7.5
    High

    CVE-2009-1024

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Beerwin PHPLinkAdmin 1.0 allow remote attackers to execute arbitrary SQL commands via the linkid parameter to edlink.php, and unspecified other vectors.

    Source:SirGod
    Published:20 Mar 2009
    7.5
    High

    CVE-2009-1023

    Last Modified: 15 Nov 2016

    SQL injection vulnerability in index.php in phpComasy 0.9.1 allows remote attackers to execute arbitrary SQL commands via the entry_id parameter.

    Source:boom3rang
    Published:20 Mar 2009
    9.3
    Critical

    CVE-2009-1022

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the Preview/ Set Segment function in Gretech GOMlab GOM Encoder 1.0.0.11 and earlier allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via a long text field in a subtitle (.srt) file.

    Source:Encrypt3d.M!nd
    Published:20 Mar 2009
    9
    Critical

    CVE-2009-1020

    Last Modified: 22 Nov 2017

    Unspecified vulnerability in the Network Foundation component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.

    Source:Dennis Yurichev
    Published:14 Jul 2009
    7.5
    High

    CVE-2009-1019

    Last Modified: 29 Apr 2014

    Unspecified vulnerability in the Network Authentication component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.

    Source:Dennis Yurichev
    Published:14 Jul 2009
    5
    Medium

    CVE-2009-0991

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Listener component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect availability via unknown vectors, a different vulnerability than CVE-2009-1970.

    Source:Dennis Yurichev
    Published:15 Apr 2009
    4
    Medium

    CVE-2009-0981

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Application Express component in Oracle Database 11.1.0.7 allows remote authenticated users to affect confidentiality, related to APEX. NOTE: the previous information was obtained from the April 2009 CPU. Oracle has not commented on reliable researcher claims that this issue allows remote authenticated users to obtain APEX password hashes from the WWV_FLOW_USERS table via a SELECT statement.

    Source:Alexander Kornbrust
    Published:15 Apr 2009
    7.5
    High

    CVE-2009-0968

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in fmoblog.php in the fMoblog plugin 2.1 for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. NOTE: some of these details are obtained from third party information.

    Source:strange kevin
    Published:19 Mar 2009
    4
    Medium

    CVE-2009-0967

    Last Modified: 26 Dec 2016

    The FTP server in Serv-U 7.0.0.1 through 7.4.0.1 allows remote authenticated users to cause a denial of service (service hang) via a large number of SMNT commands without an argument.

    Source:Jonathan Salwan
    Published:19 Mar 2009
    7.5
    High

    CVE-2009-0966

    Last Modified: 29 Nov 2016

    PHP remote file inclusion vulnerability in cross.php in YABSoft Mega File Hosting 1.2 allows remote attackers to execute arbitrary PHP code via a URL in the url parameter. NOTE: this can also be leveraged to include and execute arbitrary local files via .. (dot dot) sequences.

    Source:Garry
    Published:19 Mar 2009
    7.5
    High

    CVE-2009-0965

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in functions/browse.php in Ganesha Digital Library (GDL) 4.0 and 4.2 allows remote attackers to execute arbitrary SQL commands via the node parameter in a browse action to gdl.php.

    Source:g4t3w4y
    Published:19 Mar 2009
    7.5
    High

    CVE-2009-0964

    Last Modified: 23 Apr 2026

    UserView_list.php in PHPRunner 4.2, and possibly earlier, stores passwords in cleartext in the database, which allows attackers to gain privileges. NOTE: this can be leveraged with a separate SQL injection vulnerability to obtain passwords remotely without authentication.

    Source:BugReport.IR
    Published:19 Mar 2009
    7.5
    High

    CVE-2009-0963

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in PHPRunner 4.2, and possibly earlier, allow remote attackers to execute arbitrary SQL commands via the SearchField parameter to (1) UserView_list.php, (2) orders_list.php, (3) users_list.php, and (4) Administrator_list.php.

    Source:BugReport.IR
    Published:19 Mar 2009
    5
    Medium

    CVE-2009-0961

    Last Modified: 27 Apr 2014

    The Mail component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 dismisses the call approval dialog when another alert appears, which might allow remote attackers to force the iPhone to place a call without user approval by causing an application to trigger an alert.

    Source:Collin Mulliner
    Published:19 Jun 2009
    9.3
    Critical

    CVE-2009-0955

    Last Modified: 23 Apr 2026

    Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted image description atoms in an Apple video file, related to a "sign extension issue."

    Source:webDEViL
    Published:2 Jun 2009
    9.3
    Critical

    CVE-2009-0950

    Last Modified: 27 Oct 2016

    Stack-based buffer overflow in Apple iTunes before 8.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an itms: URL with a long URL component after a colon.

    Source:Metasploit
    Published:2 Jun 2009
    7.5
    High

    CVE-2009-0949

    Last Modified: 25 Apr 2014

    The ippReadIO function in cups/ipp.c in cupsd in CUPS before 1.3.10 does not properly initialize memory for IPP request packets, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a scheduler request with two consecutive IPP_TAG_UNSUPPORTED tags.

    Source:Anibal Sacco
    Published:2 Jun 2009
    6.4
    Medium

    CVE-2009-0932

    Last Modified: 11 Feb 2011

    Directory traversal vulnerability in framework/Image/Image.php in Horde before 3.2.4 and 3.3.3 and Horde Groupware before 1.1.5 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the Horde_Image driver name.

    Source:skysbsb
    Published:27 Jan 2009
    8.8
    High

    CVE-2009-0927

    Last Modified: 10 Mar 2011

    Stack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , and 7 before 7.1.1 allows remote attackers to execute arbitrary code via a crafted argument to the getIcon method of a Collab object, a different vulnerability than CVE-2009-0658.

    Source:Metasploit
    Published:18 Mar 2009
    4
    Medium

    CVE-2009-0922

    Last Modified: 14 Apr 2014

    PostgreSQL before 8.3.7, 8.2.13, 8.1.17, 8.0.21, and 7.4.25 allows remote authenticated users to cause a denial of service (stack consumption and crash) by triggering a failure in the conversion of a localized error message to a client-specified encoding, as demonstrated using mismatched encoding conversion requests.

    Source:Afonin Denis
    Published:27 Feb 2009
    7.5
    High

    CVE-2009-0920

    Last Modified: 16 Jul 2011

    Stack-based buffer overflow in OvCgi/Toolbar.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a long OvOSLocale cookie, a variant of CVE-2008-0067.

    Source:Metasploit
    Published:25 Mar 2009
    5
    Medium

    CVE-2009-0886

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in login.php in OneOrZero Helpdesk 1.6.5.7 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the default_language parameter.

    Source:dun
    Published:12 Mar 2009
    9.3
    Critical

    CVE-2009-0885

    Last Modified: 23 Apr 2026

    Multiple heap-based buffer overflows in Media Commands 1.0 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a long string in a (1) M3U, (2) M3l, (3) TXT, and (4) LRC playlist file.

    Source:Hakxer
    Published:12 Mar 2009
    6.8
    Medium

    CVE-2009-0883

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in Blue Eye CMS 1.0.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the BlueEyeCMS_login cookie parameter.

    Source:ka0x
    Published:12 Mar 2009
    7.5
    High

    CVE-2009-0882

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in nForum 1.5 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to showtheme.php and the (2) user parameter to userinfo.php.

    Source:Salvatore Fresta
    Published:12 Mar 2009
    7.5
    High

    CVE-2009-0881

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in ejemplo/paises.php in isiAJAX 1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:dun
    Published:12 Mar 2009
    6.8
    Medium

    CVE-2009-0880

    Last Modified: 27 Oct 2016

    Directory traversal vulnerability in the CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows remote attackers to load and execute arbitrary local DLL code via a .. (dot dot) in a /CIMListener/ URI in an M-POST request.

    Source:Bernhard Mueller
    Published:12 Mar 2009
    5
    Medium

    CVE-2009-0879

    Last Modified: 23 Apr 2026

    The CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows remote attackers to cause a denial of service (daemon crash) via a long consumer name, as demonstrated by an M-POST request to a long /CIMListener/ URI.

    Source:Bernhard Mueller
    Published:12 Mar 2009
    6.9
    Medium

    CVE-2009-0876

    Last Modified: 14 Apr 2014

    Sun xVM VirtualBox 2.0.0, 2.0.2, 2.0.4, 2.0.6r39760, 2.1.0, 2.1.2, and 2.1.4r42893 on Linux allows local users to gain privileges via a hardlink attack, which preserves setuid/setgid bits on Linux, related to DT_RPATH:$ORIGIN.

    Source:Sun Microsystems
    Published:12 Mar 2009
    5
    Medium

    CVE-2009-0866

    Last Modified: 23 Apr 2026

    pHNews Alpha 1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for extra/genbackup.php.

    Source:x0r
    Published:10 Mar 2009
    8.8
    High

    CVE-2009-0865

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the SnapShotToFile method in the GeoVision LiveX (aka LiveX_v8200) ActiveX control 8.1.2 and 8.2.0 in LIVEX_~1.OCX allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the argument, possibly involving the PlayX and SnapShotX methods.

    Source:Nine:Situations:Group
    Published:10 Mar 2009
    7.5
    High

    CVE-2009-0864

    Last Modified: 23 Apr 2026

    S-Cms 1.1 Stable allows remote attackers to bypass authentication and obtain administrative access via an OK value for the login cookie.

    Source:x0r
    Published:10 Mar 2009
    7.5
    High

    CVE-2009-0863

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in admin/delete_page.php in S-Cms 1.1 Stable allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:x0r
    Published:10 Mar 2009
    5.8
    Medium

    CVE-2009-0858

    Last Modified: 12 Apr 2014

    The response_addname function in response.c in Daniel J. Bernstein djbdns 1.05 and earlier does not constrain offsets in the required manner, which allows remote attackers, with control over a third-party subdomain served by tinydns and axfrdns, to trigger DNS responses containing arbitrary records via crafted zone data for this subdomain.

    Source:Matthew Dempsky
    Published:9 Mar 2009
    4.3
    Medium

    CVE-2009-0855

    Last Modified: 13 Apr 2014

    Cross-site scripting (XSS) vulnerability in the administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.23 on z/OS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Source:IBM
    Published:9 Mar 2009
    6.8
    Medium

    CVE-2009-0853

    Last Modified: 23 Apr 2026

    login.php in CelerBB 0.0.2, when magic_quotes_gpc is disabled, allows remote attackers to bypass authentication and obtain administrative access via special characters in the Username parameter, as demonstrated by an admin'# parameter value.

    Source:Salvatore Fresta
    Published:9 Mar 2009
    5
    Medium

    CVE-2009-0852

    Last Modified: 23 Apr 2026

    showme.php in CelerBB 0.0.2 allows remote attackers to obtain "reserved information" via the user parameter.

    Source:Salvatore Fresta
    Published:9 Mar 2009
    6.8
    Medium

    CVE-2009-0851

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in CelerBB 0.0.2, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) viewforum.php and (2) viewtopic.php.

    Source:Salvatore Fresta
    Published:9 Mar 2009
    7.5
    High

    CVE-2009-0849

    Last Modified: 15 Nov 2017

    Stack-based buffer overflow in the DtbClsLogin function in NovaStor NovaNET 12 allows remote attackers to (1) execute arbitrary code on Linux platforms via a long username field during backup domain authentication, related to libnnlindtb.so; or (2) cause a denial of service (daemon crash) on Windows platforms via a long username field during backup domain authentication, related to nnwindtb.dll. NOTE: some of these details are obtained from third party information.

    Source:AbdulAziz Hariri
    Published:9 Mar 2009