Total
398400 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2009-5141 | 1 Jgaa | 1 Warftpd | 2026-06-16 | 4.0 MEDIUM | N/A |
| Format string vulnerability in War FTP Daemon (warftpd) 1.82 RC 12 allows remote authenticated users to cause a denial of service (crash) via format string specifiers in a LIST command. | |||||
| CVE-2009-5140 | 1 Linksys | 2 Spa2102, Spa2102 Firmware | 2026-06-16 | 4.3 MEDIUM | 8.8 HIGH |
| The SIP implementation on the Linksys SPA2102 phone adapter provides hashed credentials in a response to an invalid authentication challenge, which makes it easier for remote attackers to obtain access via a brute-force attack, related to a "SIP Digest Leak" issue. | |||||
| CVE-2009-5139 | 1 Google | 1 Gizmo5 | 2026-06-16 | 4.3 MEDIUM | 7.5 HIGH |
| The SIP implementation on the Gizmo5 software phone provides hashed credentials in a response to an invalid authentication challenge, which makes it easier for remote attackers to obtain access via a brute-force attack, related to a "SIP Digest Leak" issue. | |||||
| CVE-2009-5138 | 1 Gnu | 1 Gnutls | 2026-06-16 | 5.8 MEDIUM | N/A |
| GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag is not enabled, treats version 1 X.509 certificates as intermediate CAs, which allows remote attackers to bypass intended restrictions by leveraging a X.509 V1 certificate from a trusted CA to issue new certificates, a different vulnerability than CVE-2014-1959. | |||||
| CVE-2009-5137 | 1 Mini-stream | 1 Castripper | 2026-06-16 | 7.5 HIGH | N/A |
| Stack-based buffer overflow in Mini-stream CastRipper 2.50.70 allows remote attackers to execute arbitrary code via a long URL in the [playlist] section in a .pls file, a different vector than CVE-2009-1667. | |||||
| CVE-2009-5136 | 2 Condor Project, Redhat | 2 Condor, Enterprise Mrg | 2026-06-16 | 4.0 MEDIUM | N/A |
| The policy definition evaluator in Condor before 7.4.2 does not properly handle attributes in a WANT_SUSPEND policy that evaluate to an UNDEFINED state, which allows remote authenticated users to cause a denial of service (condor_startd exit) via a crafted job. | |||||
| CVE-2009-5135 | 1 Nextapp | 1 Echo | 2026-06-16 | 5.0 MEDIUM | N/A |
| The Java XML parser in Echo before 2.1.1 and 3.x before 3.0.b6 allows remote attackers to read arbitrary files via a request containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | |||||
| CVE-2009-5134 | 1 Utorrent | 1 Utorrent | 2026-06-16 | 6.8 MEDIUM | N/A |
| Buffer overflow in the "create torrent dialog" functionality in uTorrent 1.8.3 build 15772, and possibly other versions before 1.8.3 (Build 16010), allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a text file containing a large string. NOTE: some of these details are obtained from third party information. | |||||
| CVE-2009-5132 | 1 Websense | 2 Websense Web Filter, Websense Web Security | 2026-06-16 | 5.0 MEDIUM | N/A |
| The Filtering Service in Websense Web Security and Web Filter before 6.3.1 Hotfix 106 and 7.x before 7.1 allow remote attackers to cause a denial of service (filtering outage) via a crafted URL. | |||||
| CVE-2009-5131 | 1 Websense | 1 Websense Email Security | 2026-06-16 | 5.0 MEDIUM | N/A |
| The Receive Service in Websense Email Security before 7.1 does not recognize domain extensions in the blacklist, which allows remote attackers to bypass intended access restrictions and send e-mail messages via an SMTP session. | |||||
| CVE-2009-5130 | 1 Websense | 1 Websense Email Security | 2026-06-16 | 4.3 MEDIUM | N/A |
| The Rules Service in Websense Email Security before 7.1 allows remote attackers to cause a denial of service (service crash) via an attachment with a crafted size. | |||||
| CVE-2009-5129 | 1 Websense | 1 Websense V10000 | 2026-06-16 | 5.0 MEDIUM | N/A |
| The Websense V10000 appliance before 1.0.1 allows remote attackers to cause a denial of service (intermittent LDAP authentication outage) via a login attempt with an incorrect password. | |||||
| CVE-2009-5128 | 1 Websense | 1 Websense V10000 | 2026-06-16 | 5.0 MEDIUM | N/A |
| The Websense V10000 appliance before 1.0.1 allows remote attackers to cause a denial of service (memory consumption and process crash) via a large file that is not properly handled during buffering. | |||||
| CVE-2009-5127 | 1 Comodo | 1 Comodo Internet Security | 2026-06-16 | 4.3 MEDIUM | N/A |
| The Antivirus component in Comodo Internet Security before 3.8.64739.471 allows remote attackers to cause a denial of service (application crash) via a crafted file. | |||||
| CVE-2009-5126 | 1 Comodo | 1 Comodo Internet Security | 2026-06-16 | 4.3 MEDIUM | N/A |
| The Antivirus component in Comodo Internet Security before 3.8.65951.477 allows remote attackers to cause a denial of service (application crash) via a crafted file. | |||||
| CVE-2009-5125 | 1 Comodo | 1 Comodo Internet Security | 2026-06-16 | 4.3 MEDIUM | N/A |
| Comodo Internet Security before 3.9.95478.509 allows remote attackers to bypass malware detection in an RAR archive via an unspecified manipulation of the archive file format. | |||||
| CVE-2009-5124 | 1 Comodo | 1 Comodo Internet Security | 2026-06-16 | 4.3 MEDIUM | N/A |
| The Antivirus component in Comodo Internet Security before 3.11.108364.552 allows remote attackers to cause a denial of service (application crash) via a crafted packed file. | |||||
| CVE-2009-5123 | 1 Comodo | 1 Comodo Internet Security | 2026-06-16 | 4.3 MEDIUM | N/A |
| The Antivirus component in Comodo Internet Security before 3.11.108364.552 allows remote attackers to cause a denial of service (memory consumption) via a crafted compressed file. | |||||
| CVE-2009-5122 | 1 Websense | 1 Websense Email Security | 2026-06-16 | 5.0 MEDIUM | N/A |
| The Personal Email Manager component in Websense Email Security before 7.2 allows remote attackers to obtain potentially sensitive information from the JBoss status page via an unspecified query. | |||||
| CVE-2009-5121 | 1 Websense | 1 Websense Email Security | 2026-06-16 | 5.0 MEDIUM | N/A |
| Websense Email Security 7.1 before Hotfix 4 allows remote attackers to bypass the sender-based blacklist by using the 8BITMIME EHLO keyword in the SMTP session. | |||||
