LiveActive security incident?Get immediate response
CVE archive

January 2009

Browse CVE records published in January 2009, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 363 matching CVEs · Page 6 of 8.

Unknown · CVSS Not scored

CVE-2009-0282: Integer overflow in Ralink Technology USB wireless adapter (RT73) 3.08 for Windows, and other wireless card...

Integer overflow in Ralink Technology USB wireless adapter (RT73) 3.08 for Windows, and other wireless card drivers including rt2400, rt2500, rt2570, and rt61, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Probe Request packet with a long SSID, possibly related to an integer signedness error.

Published Jan 27, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0257: Multiple cross-site scripting (XSS) vulnerabilities in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and...

Multiple cross-site scripting (XSS) vulnerabilities in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) content of indexed files to the (a) Indexed Search Engine (indexed_search) system extension; (b) unspecified test scripts in the ADOdb system extension; and (c) unspecified vectors in the Workspace module.

Published Jan 22, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0251: Static code injection vulnerability in admin.php in Ryneezy phoSheezy 0.2 allows remote authenticated admin...

Static code injection vulnerability in admin.php in Ryneezy phoSheezy 0.2 allows remote authenticated administrators to inject arbitrary PHP code into config/footer via the footer parameter. NOTE: this can be exploited by unauthenticated attackers by leveraging CVE-2009-0250. NOTE: some of these details are obtained from third party information.

Published Jan 22, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0243: Microsoft Windows does not properly enforce the Autorun and NoDriveTypeAutoRun registry values, which allow...

Microsoft Windows does not properly enforce the Autorun and NoDriveTypeAutoRun registry values, which allows physically proximate attackers to execute arbitrary code by (1) inserting CD-ROM media, (2) inserting DVD media, (3) connecting a USB device, and (4) connecting a Firewire device; (5) allows user-assisted remote attackers to execute arbitrary code by mapping a network drive; and allows user-assisted attackers to execute arbitrary code by clicking on (6) an icon under My Computer\Devices with Removable Storage and (7) an option in an AutoPlay dialog, related to the Autorun.inf file. NOTE: vectors 1 and 3 on Vista are already covered by CVE-2008-0951.

Published Jan 21, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0259: The Word processor in OpenOffice.org 1.1.2 through 1.1.5 allows remote attackers to cause a denial of servi...

The Word processor in OpenOffice.org 1.1.2 through 1.1.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) .doc, (2) .wri, or (3) .rtf Word 97 file that triggers memory corruption, as exploited in the wild in December 2008, as demonstrated by 2008-crash.doc.rar, and a similar issue to CVE-2008-4841.

Published Jan 22, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0265: Internet Systems Consortium (ISC) BIND 9.6.0 and earlier does not properly check the return value from the...

Internet Systems Consortium (ISC) BIND 9.6.0 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077 and CVE-2009-0025.

Published Jan 26, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0219: The PDF distiller in the Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES)...

The PDF distiller in the Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.1.3 through 4.1.6, BlackBerry Professional Software 4.1.4, and BlackBerry Unite! before 1.0.3 bundle 28 performs delete operations on uninitialized pointers, which allows user-assisted remote attackers to execute arbitrary code via a crafted data stream in a .pdf file.

Published Jan 21, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0252: Multiple SQL injection vulnerabilities in default.asp in Enthrallweb eReservations allow remote attackers t...

Multiple SQL injection vulnerabilities in default.asp in Enthrallweb eReservations allow remote attackers to execute arbitrary SQL commands via the (1) Login parameter (aka username field) or the (2) Password parameter (aka password field). NOTE: some of these details are obtained from third party information.

Published Jan 22, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0244: Directory traversal vulnerability in the OBEX FTP Service in the Microsoft Bluetooth stack in Windows Mobil...

Directory traversal vulnerability in the OBEX FTP Service in the Microsoft Bluetooth stack in Windows Mobile 6 Professional, and probably Windows Mobile 5.0 for Pocket PC and 5.0 for Pocket PC Phone Edition, allows remote authenticated users to list arbitrary directories, and create or read arbitrary files, via a .. (dot dot) in a pathname. NOTE: this can be leveraged for code execution by writing to a Startup folder.

Published Jan 21, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0136: Multiple array index errors in the Audible::Tag::readTag function in metadata/audible/audibletag.cpp in Ama...

Multiple array index errors in the Audible::Tag::readTag function in metadata/audible/audibletag.cpp in Amarok 1.4.10 through 2.0.1 allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via an Audible Audio (.aa) file with a crafted (1) nlen or (2) vlen Tag value, each of which can lead to an invalid pointer dereference, or the writing of a 0x00 byte to an arbitrary memory location, after an allocation failure.

Published Jan 16, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0134: Insecure method vulnerability in the EasyGrid.SGCtrl.32 ActiveX control in EasyGrid.ocx 1.0.0.1 in AAA Easy...

Insecure method vulnerability in the EasyGrid.SGCtrl.32 ActiveX control in EasyGrid.ocx 1.0.0.1 in AAA EasyGrid ActiveX 3.51 allows remote attackers to create and overwrite arbitrary files via the (1) DoSaveFile or (2) DoSaveHtmlFile method. NOTE: vector 1 could be leveraged for code execution by creating executable files in Startup folders or by accessing files using hcp:// URLs. NOTE: some of these details are obtained from third party information.

Published Jan 16, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0135: Multiple integer overflows in the Audible::Tag::readTag function in metadata/audible/audibletag.cpp in Amar...

Multiple integer overflows in the Audible::Tag::readTag function in metadata/audible/audibletag.cpp in Amarok 1.4.10 through 2.0.1 allow remote attackers to execute arbitrary code via an Audible Audio (.aa) file with a large (1) nlen or (2) vlen Tag value, each of which triggers a heap-based buffer overflow.

Published Jan 16, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-0177: vmwarebase.dll, as used in the vmware-authd service (aka vmware-authd.exe), in VMware Workstation 6.5.1 bui...

vmwarebase.dll, as used in the vmware-authd service (aka vmware-authd.exe), in VMware Workstation 6.5.1 build 126130, 6.5.1 and earlier; VMware Player 2.5.1 build 126130, 2.5.1 and earlier; VMware ACE 2.5.1 and earlier; VMware Server 2.0.x before 2.0.1 build 156745; and VMware Fusion before 2.0.2 build 147997 allows remote attackers to cause a denial of service (daemon crash) via a long (1) USER or (2) PASS command.

Published Jan 20, 2009 · Updated Aug 7, 2024