CVE-2008-2064
UnknownEPSS 1.87%
Last modified
CVE-2008-2064 is a vulnerability of currently unknown severity. Multiple unspecified vulnerabilities in PhpGedView before 4.1.5 have unknown impact and attack vectors related to "a fundamental design flaw in the interface (API) to connect phpGedView with external programs like content management systems.". EPSS estimates a 1.87% chance of exploitation in the next 30 days.
Description
Multiple unspecified vulnerabilities in PhpGedView before 4.1.5 have unknown impact and attack vectors related to "a fundamental design flaw in the interface (API) to connect phpGedView with external programs like content management systems."
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Phpgedview | Phpgedview | <= 4.1.4 |
| Phpgedview | Phpgedview | 0.6 |
| Phpgedview | Phpgedview | 0.8 |
| Phpgedview | Phpgedview | 0.95 |
| Phpgedview | Phpgedview | 1.0 |
| Phpgedview | Phpgedview | 1.1 |
| Phpgedview | Phpgedview | 1.04 |
| Phpgedview | Phpgedview | 2.0 |
| Phpgedview | Phpgedview | 2.12 |
| Phpgedview | Phpgedview | 2.13 |
| Phpgedview | Phpgedview | 2.50 |
| Phpgedview | Phpgedview | 2.60 |
| Phpgedview | Phpgedview | 2.65 |
| Phpgedview | Phpgedview | 3.0 |
| Phpgedview | Phpgedview | 3.2 |
| Phpgedview | Phpgedview | 3.3.8 |
| Phpgedview | Phpgedview | 4.0 |
| Phpgedview | Phpgedview | 4.1.1 |
| Phpgedview | Phpgedview | 4.1.3 |
References
- http://secunia.com/advisories/29989Vendor Advisory
- http://secunia.com/advisories/30256Vendor Advisory
- http://www.phpgedview.net/Patch, Vendor Advisory
- http://secunia.com/advisories/29989Vendor Advisory
- http://secunia.com/advisories/30256Vendor Advisory
- http://www.phpgedview.net/Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-2064?
Multiple unspecified vulnerabilities in PhpGedView before 4.1.5 have unknown impact and attack vectors related to "a fundamental design flaw in the interface (API) to connect phpGedView with external programs like content management systems."
How severe is CVE-2008-2064?
Severity scoring for CVE-2008-2064 is pending analysis. The EPSS model estimates a 1.87% probability of exploitation in the next 30 days.
How do I fix CVE-2008-2064?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2008
- CVE-2008-2058Cisco Adaptive Security Appliance (ASA) and Cisco PIX securi…
- CVE-2008-2059Cisco Adaptive Security Appliance (ASA) and Cisco PIX securi…
- CVE-2008-2060Unspecified vulnerability in Cisco Intrusion Prevention Syst…
- CVE-2008-2061The Computer Telephony Integration (CTI) Manager service in …
- CVE-2008-2062The Real-Time Information Server (RIS) Data Collector servic…
- CVE-2008-2063SQL injection vulnerability in browse.videos.php in Joovili …
- CVE-2008-2065SQL injection vulnerability in jokes.php in YourFreeWorld Jo…
- CVE-2008-2066Cross-site scripting (XSS) vulnerability in bb_admin.php in …
- CVE-2008-2067SQL injection vulnerability in bb_admin.php in miniBB 2.2a a…
- CVE-2008-2068Cross-site scripting (XSS) vulnerability in WordPress 2.5 al…
- CVE-2008-2069Buffer overflow in Novell GroupWise 7 allows remote attacker…
- CVE-2008-2070The WHM interface 11.15.0 for cPanel 11.18 before 11.18.4 an…
Are you affected by CVE-2008-2064?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
