2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-4803——Cross-site scripting (XSS) vulnerability in index.php in Simple PHP Scripts gallery 0.1, 0.3, and 0.4 allows remote atta...
CVE-2008-4802——Cross-site scripting (XSS) vulnerability in complete.php in Simple PHP Scripts blog 0.3 allows remote attackers to injec...
CVE-2008-4801——Heap-based buffer overflow in the Data Protection for SQL CAD service (aka dsmcat.exe) in the Client Acceptor Daemon (CA...
CVE-2008-4800——The DebugDiag ActiveX control in CrashHangExt.dll, possibly 1.0, in Microsoft Debug Diagnostic Tool allows remote attack...
CVE-2008-4799——pamperspective in Netpbm before 10.35.48 does not properly calculate a window height, which allows context-dependent att...
CVE-2008-4798——The loadModule function in lib/WebGUI/Asset.pm in WebGUI before 7.5.30 (stable) allows remote attackers to execute arbit...
CVE-2008-4797——Directory traversal vulnerability in Arihiro Kurata Kantan WEB Server 1.8 and earlier allows remote attackers to read ar...
CVE-2008-4796——The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier, as used in (1) ampache, (2) libphp-sno...
CVE-2008-4795——The links panel in Opera before 9.62 processes Javascript within the context of the "outermost page" of a frame, which a...
CVE-2008-4794——Opera before 9.62 allows remote attackers to execute arbitrary commands via the History Search results page, a different...
CVE-2008-2238——Multiple integer overflows in OpenOffice.org (OOo) 2.x before 2.4.2 allow remote attackers to execute arbitrary code via...
CVE-2008-2237——Heap-based buffer overflow in OpenOffice.org (OOo) 2.x before 2.4.2 allows remote attackers to execute arbitrary code vi...
CVE-2008-4793——The node module API in Drupal 5.x before 5.11 allows remote attackers to bypass node validation and have unspecified oth...
CVE-2008-4792——The core BlogAPI module in Drupal 5.x before 5.11 and 6.x before 6.5 does not properly validate unspecified content fiel...
CVE-2008-4791——The user module in Drupal 5.x before 5.11 and 6.x before 6.5 might allow remote authenticated users to bypass intended l...
CVE-2008-4790——The core upload module in Drupal 5.x before 5.11 allows remote authenticated users to bypass intended access restriction...
CVE-2008-4789——The validation functionality in the core upload module in Drupal 6.x before 6.5 allows remote authenticated users to byp...
CVE-2008-4788——Microsoft Internet Explorer 6 omits high-bit URL-encoded characters when displaying the address bar, which allows remote...
CVE-2008-4787——Visual truncation vulnerability in Microsoft Internet Explorer 6 allows remote attackers to spoof the address bar via a ...
CVE-2008-4786——SQL injection vulnerability in easyshop.php in the EasyShop plugin for e107 allows remote attackers to execute arbitrary...
CVE-2008-4785——SQL injection vulnerability in newuser.php in the alternate_profiles plugin, possibly 0.2, for e107 allows remote attack...
CVE-2008-4784——aflog 1.01 allows remote attackers to bypass authentication and gain administrative access by setting the aflog_auth_a c...
CVE-2008-4783——tlAds 1.0 allows remote attackers to bypass authentication and gain administrative access by setting the tlAds_login coo...
CVE-2008-4782——SQL injection vulnerability in public/code/cp_polls_results.php in All In One Control Panel (AIOCP) 1.4 allows remote at...
CVE-2008-4781——Directory traversal vulnerability in update.php in MyKtools 2.4 allows remote attackers to include and execute arbitrary...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now