2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-4803Cross-site scripting (XSS) vulnerability in index.php in Simple PHP Scripts gallery 0.1, 0.3, and 0.4 allows remote atta...
CVE-2008-4802Cross-site scripting (XSS) vulnerability in complete.php in Simple PHP Scripts blog 0.3 allows remote attackers to injec...
CVE-2008-4801Heap-based buffer overflow in the Data Protection for SQL CAD service (aka dsmcat.exe) in the Client Acceptor Daemon (CA...
CVE-2008-4800The DebugDiag ActiveX control in CrashHangExt.dll, possibly 1.0, in Microsoft Debug Diagnostic Tool allows remote attack...
CVE-2008-4799pamperspective in Netpbm before 10.35.48 does not properly calculate a window height, which allows context-dependent att...
CVE-2008-4798The loadModule function in lib/WebGUI/Asset.pm in WebGUI before 7.5.30 (stable) allows remote attackers to execute arbit...
CVE-2008-4797Directory traversal vulnerability in Arihiro Kurata Kantan WEB Server 1.8 and earlier allows remote attackers to read ar...
CVE-2008-4796The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier, as used in (1) ampache, (2) libphp-sno...
CVE-2008-4795The links panel in Opera before 9.62 processes Javascript within the context of the "outermost page" of a frame, which a...
CVE-2008-4794Opera before 9.62 allows remote attackers to execute arbitrary commands via the History Search results page, a different...
CVE-2008-2238Multiple integer overflows in OpenOffice.org (OOo) 2.x before 2.4.2 allow remote attackers to execute arbitrary code via...
CVE-2008-2237Heap-based buffer overflow in OpenOffice.org (OOo) 2.x before 2.4.2 allows remote attackers to execute arbitrary code vi...
CVE-2008-4793The node module API in Drupal 5.x before 5.11 allows remote attackers to bypass node validation and have unspecified oth...
CVE-2008-4792The core BlogAPI module in Drupal 5.x before 5.11 and 6.x before 6.5 does not properly validate unspecified content fiel...
CVE-2008-4791The user module in Drupal 5.x before 5.11 and 6.x before 6.5 might allow remote authenticated users to bypass intended l...
CVE-2008-4790The core upload module in Drupal 5.x before 5.11 allows remote authenticated users to bypass intended access restriction...
CVE-2008-4789The validation functionality in the core upload module in Drupal 6.x before 6.5 allows remote authenticated users to byp...
CVE-2008-4788Microsoft Internet Explorer 6 omits high-bit URL-encoded characters when displaying the address bar, which allows remote...
CVE-2008-4787Visual truncation vulnerability in Microsoft Internet Explorer 6 allows remote attackers to spoof the address bar via a ...
CVE-2008-4786SQL injection vulnerability in easyshop.php in the EasyShop plugin for e107 allows remote attackers to execute arbitrary...
CVE-2008-4785SQL injection vulnerability in newuser.php in the alternate_profiles plugin, possibly 0.2, for e107 allows remote attack...
CVE-2008-4784aflog 1.01 allows remote attackers to bypass authentication and gain administrative access by setting the aflog_auth_a c...
CVE-2008-4783tlAds 1.0 allows remote attackers to bypass authentication and gain administrative access by setting the tlAds_login coo...
CVE-2008-4782SQL injection vulnerability in public/code/cp_polls_results.php in All In One Control Panel (AIOCP) 1.4 allows remote at...
CVE-2008-4781Directory traversal vulnerability in update.php in MyKtools 2.4 allows remote attackers to include and execute arbitrary...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now