Back to Database
Status published
High
CVE-2009-0364
Format string vulnerability in the mini_calendar component in Citadel.org WebCit...
Vulnerability Description
Format string vulnerability in the mini_calendar component in Citadel.org WebCit 7.22, and other versions before 7.39, allows remote attackers to execute arbitrary code via unspecified vectors.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2009-0364
Credits & Attribution
No credits recorded in the NVD database.
References
More from citadel
View All →CVE-2021-37845
An issue was discovered in Citadel through webcit-932. A meddler-in-the-middle...
Unknown
0
CVE-2020-29547
An issue was discovered in Citadel through webcit-926. Meddler-in-the-middle attackers...
Unknown
0
CVE-2020-27742
An Insecure Direct Object Reference vulnerability in Citadel WebCit through...
Medium
6.5
CVE-2020-27741
Multiple cross-site scripting (XSS) vulnerabilities in Citadel WebCit through 926...
Medium
6.1
CVE-2020-27740
Citadel WebCit through 926 allows unauthenticated remote attackers to enumerate...
Medium
5.3
Affected Vendor
citadel
View all reports →Affected Software
webcit
Vulnerable Versions:
0, 7.02, 7.10, 7.11, 7.12, 7.22, 7.37
Timeline
Official Publish:
March 24th, 2009
Last Modified:
August 7th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.