2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-4715 | — | — | 1.5% | Oct 23, 2008 | SQL injection vulnerability in the Jpad (com_jpad) 1.0 component for Joomla! allows remote attackers to execute arbitrar... |
| CVE-2008-4714 | — | — | 2.6% | Oct 23, 2008 | Atomic Photo Album 1.1.0 pre4 does not properly handle the apa_cookie_login and apa_cookie_password cookies, which proba... |
| CVE-2008-4713 | — | — | 1.0% | Oct 23, 2008 | SQL injection vulnerability in view.php in 212cafe Board 0.07 allows remote attackers to execute arbitrary SQL commands ... |
| CVE-2008-4712 | — | — | 1.9% | Oct 23, 2008 | Directory traversal vulnerability in pages/showblog.php in LnBlog 0.9.0 and earlier, when magic_quotes_gpc is disabled, ... |
| CVE-2008-4711 | — | — | 0.9% | Oct 23, 2008 | SQL injection vulnerability in Joovili 3.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to ex... |
| CVE-2008-4710 | — | — | 1.0% | Oct 23, 2008 | Cross-site scripting (XSS) vulnerability in the stock quotes page in Stock 6.x before 6.x-1.0, a module for Drupal, allo... |
| CVE-2008-4709 | — | — | 1.0% | Oct 23, 2008 | SQL injection vulnerability in news_read.php in Pilot Group (PG) eTraining allows remote attackers to execute arbitrary ... |
| CVE-2008-4708 | — | — | 2.8% | Oct 23, 2008 | BbZL.PhP 0.92 allows remote attackers to bypass authentication and gain administrative access by setting the phorum_admi... |
| CVE-2008-4707 | — | — | 2.7% | Oct 23, 2008 | Directory traversal vulnerability in index.php in BbZL.PhP 0.92 allows remote attackers to access unauthorized directori... |
| CVE-2008-4706 | — | — | 1.0% | Oct 23, 2008 | SQL injection vulnerability in VBGooglemap Hotspot Edition 1.0.3, a vBulletin module, allows remote attackers to execute... |
| CVE-2008-4705 | — | — | 1.0% | Oct 23, 2008 | SQL injection vulnerability in success_story.php in php Online Dating Software MyPHPDating allows remote attackers to ex... |
| CVE-2008-4704 | — | — | 3.5% | Oct 23, 2008 | PHP remote file inclusion vulnerability in SezHooTabsAndActions.php in SezHoo 0.1 allows remote attackers to execute arb... |
| CVE-2008-4703 | — | — | 1.0% | Oct 23, 2008 | SQL injection vulnerability in news.php in BosDev BosNews 4.0 allows remote attackers to execute arbitrary SQL commands ... |
| CVE-2008-4702 | — | — | 2.5% | Oct 22, 2008 | Multiple directory traversal vulnerabilities in PhpWebGallery 1.3.4 allow remote attackers to include and execute arbitr... |
| CVE-2008-4701 | — | — | 0.9% | Oct 22, 2008 | SQL injection vulnerability in admin.php in Libera CMS 1.12, when magic_quotes_gpc is disabled, allows remote attackers ... |
| CVE-2008-4700 | — | — | 1.0% | Oct 22, 2008 | SQL injection vulnerability in admin.php in Libera CMS 1.12 and earlier, when magic_quotes_gpc is disabled, allows remot... |
| CVE-2008-4699 | — | — | 27.2% | Oct 22, 2008 | Insecure method vulnerability in the ActiveX control (PAWWeb11.ocx) in Peachtree Accounting 2004 allows remote attackers... |
| CVE-2008-4693 | — | — | 1.3% | Oct 22, 2008 | The SORT/LIST SERVICES component in IBM DB2 9.1 before FP6 and 9.5 before FP2 writes sensitive information to the trace ... |
| CVE-2008-4692 | — | — | 2.1% | Oct 22, 2008 | The Native Managed Provider for .NET component in IBM DB2 8 before FP17, 9.1 before FP6, and 9.5 before FP2, when a defi... |
| CVE-2008-4691 | — | — | 1.2% | Oct 22, 2008 | Unspecified vulnerability in the SQLNLS_UNPADDEDCHARLEN function in the New Compiler (aka Starburst derived compiler) co... |
| CVE-2008-4690 | — | — | 5.1% | Oct 22, 2008 | lynx 2.8.6dev.15 and earlier, when advanced mode is enabled and lynx is configured as a URL handler, allows remote attac... |
| CVE-2008-4689 | — | — | 2.5% | Oct 22, 2008 | Mantis before 1.1.3 does not unset the session cookie during logout, which makes it easier for remote attackers to hijac... |
| CVE-2008-4688 | — | — | 11.7% | Oct 22, 2008 | core/string_api.php in Mantis before 1.1.3 does not check the privileges of the viewer before composing a link with issu... |
| CVE-2008-4687 | — | — | 67.5% | Oct 22, 2008 | manage_proj_page.php in Mantis before 1.1.4 allows remote authenticated users to execute arbitrary code via a sort param... |
| CVE-2008-4686 | — | — | 9.9% | Oct 22, 2008 | Multiple integer overflows in ty.c in the TY demux plugin (aka the TiVo demuxer) in VideoLAN VLC media player, probably ... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now