2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-4803 | — | — | 1.2% | Oct 31, 2008 | Cross-site scripting (XSS) vulnerability in index.php in Simple PHP Scripts gallery 0.1, 0.3, and 0.4 allows remote atta... |
| CVE-2008-4802 | — | — | 0.9% | Oct 31, 2008 | Cross-site scripting (XSS) vulnerability in complete.php in Simple PHP Scripts blog 0.3 allows remote attackers to injec... |
| CVE-2008-4801 | — | — | 11.4% | Oct 31, 2008 | Heap-based buffer overflow in the Data Protection for SQL CAD service (aka dsmcat.exe) in the Client Acceptor Daemon (CA... |
| CVE-2008-4800 | — | — | 25.8% | Oct 31, 2008 | The DebugDiag ActiveX control in CrashHangExt.dll, possibly 1.0, in Microsoft Debug Diagnostic Tool allows remote attack... |
| CVE-2008-4799 | — | — | 1.7% | Oct 31, 2008 | pamperspective in Netpbm before 10.35.48 does not properly calculate a window height, which allows context-dependent att... |
| CVE-2008-4798 | — | — | 4.0% | Oct 30, 2008 | The loadModule function in lib/WebGUI/Asset.pm in WebGUI before 7.5.30 (stable) allows remote attackers to execute arbit... |
| CVE-2008-4797 | — | — | 1.8% | Oct 30, 2008 | Directory traversal vulnerability in Arihiro Kurata Kantan WEB Server 1.8 and earlier allows remote attackers to read ar... |
| CVE-2008-4796 | — | — | 9.0% | Oct 30, 2008 | The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier, as used in (1) ampache, (2) libphp-sno... |
| CVE-2008-4795 | — | — | 4.3% | Oct 30, 2008 | The links panel in Opera before 9.62 processes Javascript within the context of the "outermost page" of a frame, which a... |
| CVE-2008-4794 | — | — | 4.5% | Oct 30, 2008 | Opera before 9.62 allows remote attackers to execute arbitrary commands via the History Search results page, a different... |
| CVE-2008-2238 | — | — | 6.8% | Oct 30, 2008 | Multiple integer overflows in OpenOffice.org (OOo) 2.x before 2.4.2 allow remote attackers to execute arbitrary code via... |
| CVE-2008-2237 | — | — | 6.1% | Oct 30, 2008 | Heap-based buffer overflow in OpenOffice.org (OOo) 2.x before 2.4.2 allows remote attackers to execute arbitrary code vi... |
| CVE-2008-4793 | — | — | 2.2% | Oct 29, 2008 | The node module API in Drupal 5.x before 5.11 allows remote attackers to bypass node validation and have unspecified oth... |
| CVE-2008-4792 | — | — | 1.3% | Oct 29, 2008 | The core BlogAPI module in Drupal 5.x before 5.11 and 6.x before 6.5 does not properly validate unspecified content fiel... |
| CVE-2008-4791 | — | — | 1.8% | Oct 29, 2008 | The user module in Drupal 5.x before 5.11 and 6.x before 6.5 might allow remote authenticated users to bypass intended l... |
| CVE-2008-4790 | — | — | 1.0% | Oct 29, 2008 | The core upload module in Drupal 5.x before 5.11 allows remote authenticated users to bypass intended access restriction... |
| CVE-2008-4789 | — | — | 0.9% | Oct 29, 2008 | The validation functionality in the core upload module in Drupal 6.x before 6.5 allows remote authenticated users to byp... |
| CVE-2008-4788 | — | — | 9.1% | Oct 29, 2008 | Microsoft Internet Explorer 6 omits high-bit URL-encoded characters when displaying the address bar, which allows remote... |
| CVE-2008-4787 | — | — | 13.6% | Oct 29, 2008 | Visual truncation vulnerability in Microsoft Internet Explorer 6 allows remote attackers to spoof the address bar via a ... |
| CVE-2008-4786 | — | — | 1.0% | Oct 29, 2008 | SQL injection vulnerability in easyshop.php in the EasyShop plugin for e107 allows remote attackers to execute arbitrary... |
| CVE-2008-4785 | — | — | 1.0% | Oct 29, 2008 | SQL injection vulnerability in newuser.php in the alternate_profiles plugin, possibly 0.2, for e107 allows remote attack... |
| CVE-2008-4784 | — | — | 2.8% | Oct 29, 2008 | aflog 1.01 allows remote attackers to bypass authentication and gain administrative access by setting the aflog_auth_a c... |
| CVE-2008-4783 | — | — | 2.8% | Oct 29, 2008 | tlAds 1.0 allows remote attackers to bypass authentication and gain administrative access by setting the tlAds_login coo... |
| CVE-2008-4782 | — | — | 1.0% | Oct 29, 2008 | SQL injection vulnerability in public/code/cp_polls_results.php in All In One Control Panel (AIOCP) 1.4 allows remote at... |
| CVE-2008-4781 | — | — | 2.4% | Oct 29, 2008 | Directory traversal vulnerability in update.php in MyKtools 2.4 allows remote attackers to include and execute arbitrary... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now