2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-4660 | — | — | 1.1% | Oct 22, 2008 | SQL injection vulnerability in the M1 Intern (m1_intern) 1.0.0 extension for TYPO3 allows remote attackers to execute ar... |
| CVE-2008-4659 | — | — | 1.1% | Oct 22, 2008 | SQL injection vulnerability in the Mannschaftsliste (kiddog_playerlist) 1.0.3 and earlier extension for TYPO3 allows rem... |
| CVE-2008-4658 | — | — | 1.1% | Oct 22, 2008 | SQL injection vulnerability in the JobControl (dmmjobcontrol) 1.15.4 and earlier extension for TYPO3 allows remote attac... |
| CVE-2008-4657 | — | — | 1.1% | Oct 22, 2008 | SQL injection vulnerability in the Econda Plugin (econda) 0.0.2 and earlier extension for TYPO3 allows remote attackers ... |
| CVE-2008-4656 | — | — | 1.1% | Oct 22, 2008 | SQL injection vulnerability in the Frontend Users View (feusersview) 0.1.6 and earlier extension for TYPO3 allows remote... |
| CVE-2008-4655 | — | — | 1.1% | Oct 22, 2008 | SQL injection vulnerability in the Simple survey (simplesurvey) 1.7.0 and earlier extension for TYPO3 allows remote atta... |
| CVE-2008-4654 | — | — | 57.5% | Oct 22, 2008 | Stack-based buffer overflow in the parse_master function in the Ty demux plugin (modules/demux/ty.c) in VLC Media Player... |
| CVE-2008-4653 | — | — | 1.0% | Oct 22, 2008 | SQL injection vulnerability in makale.php in Makale 0.26 and possibly other versions, a module for XOOPS, allows remote ... |
| CVE-2008-4652 | — | — | 10.1% | Oct 22, 2008 | Buffer overflow in the ActiveX control (DartFtp.dll) in Dart Communications PowerTCP FTP for ActiveX 2.0.2 0 allows remo... |
| CVE-2008-4651 | — | — | 0.8% | Oct 22, 2008 | Multiple SQL injection vulnerabilities in Jetbox CMS 2.1 allow remote authenticated users to execute arbitrary SQL comma... |
| CVE-2008-4650 | — | — | 1.0% | Oct 22, 2008 | SQL injection vulnerability in viewevent.php in myEvent 1.6 allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2008-4649 | — | — | 2.4% | Oct 22, 2008 | Session fixation vulnerability in Elxis CMS 2008.1 revision 2204 allows remote attackers to hijack web sessions by setti... |
| CVE-2008-4648 | — | — | 1.5% | Oct 22, 2008 | Cross-site scripting (XSS) vulnerability in index.php in Elxis CMS 2008.1 revision 2204 allows remote attackers to injec... |
| CVE-2008-4647 | — | — | 1.1% | Oct 22, 2008 | SQL injection vulnerability in index.php in sweetCMS 1.5.2 allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2008-4646 | — | — | 0.3% | Oct 22, 2008 | The Websense Reporter Module in Websense Enterprise 6.3.2 stores the SQL database system administrator password in plain... |
| CVE-2008-4645 | — | — | 7.1% | Oct 22, 2008 | plugins/event_tracer/event_list.php in PhpWebGallery 1.7.2 and earlier allows remote authenticated administrators to exe... |
| CVE-2008-4644 | — | — | 2.6% | Oct 22, 2008 | hits.php in myWebland myStats allows remote attackers to bypass IP address restrictions via a modified X-Forwarded-For H... |
| CVE-2008-4643 | — | — | 1.0% | Oct 22, 2008 | SQL injection vulnerability in hits.php in myWebland myStats allows remote attackers to execute arbitrary SQL commands v... |
| CVE-2008-4642 | — | — | 1.0% | Oct 21, 2008 | SQL injection vulnerability in profile.php in AstroSPACES 1.1.1 allows remote attackers to execute arbitrary SQL command... |
| CVE-2008-4641 | — | — | 2.2% | Oct 21, 2008 | The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows attackers to execute arbitrary comman... |
| CVE-2008-4640 | — | — | 0.3% | Oct 21, 2008 | The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to delete arbitrary files... |
| CVE-2008-4639 | — | — | 0.3% | Oct 21, 2008 | jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to overwrite arbitrary files via a symlink attack o... |
| CVE-2008-4638 | — | — | 0.3% | Oct 21, 2008 | qioadmin in the Quick I/O for Database feature in Symantec Veritas File System (VxFS) on HP-UX, and before 5.0 MP3 on So... |
| CVE-2008-4637 | — | — | 0.8% | Oct 21, 2008 | Cross-site scripting (XSS) vulnerability in cpCommerce before 1.2.4 allows remote attackers to inject arbitrary web scri... |
| CVE-2008-4121 | — | — | 1.3% | Oct 21, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in cpCommerce before 1.2.4 allow remote attackers to inject arbitrar... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now