2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-3248 | — | — | 0.3% | Oct 21, 2008 | qiomkfile in the Quick I/O for Database feature in Symantec Veritas File System (VxFS) on HP-UX, and before 5.0 MP3 on S... |
| CVE-2008-4635 | — | — | 1.4% | Oct 21, 2008 | Unspecified vulnerability in Hisanaga Electric Co, Ltd. hisa_cart 1.29 and earlier, a module for XOOPS, allows remote at... |
| CVE-2008-4634 | — | — | 1.0% | Oct 21, 2008 | Cross-site scripting (XSS) vulnerability in Movable Type 4 through 4.21 allows remote attackers to inject arbitrary web ... |
| CVE-2008-4633 | — | — | 0.8% | Oct 21, 2008 | SQL injection vulnerability in Node Vote 5.x before 5.x-1.1 and 6.x before 6.x-1.0, a module for Drupal, when "Allow use... |
| CVE-2008-4632 | — | — | 1.9% | Oct 21, 2008 | Multiple directory traversal vulnerabilities in index.php in Kure 0.6.3, when magic_quotes_gpc is disabled, allow remote... |
| CVE-2008-4631 | — | — | 4.8% | Oct 21, 2008 | Stack-based buffer overflow in the Message::AddToString function in message/Message.cpp in MUSCLE before 4.40 allows rem... |
| CVE-2008-4630 | — | — | 1.5% | Oct 21, 2008 | Multiple unspecified vulnerabilities in Midgard Components (MidCOM) Framework before 8.09.1 have unknown impact and atta... |
| CVE-2008-4629 | — | — | 1.2% | Oct 21, 2008 | Cross-site scripting (XSS) vulnerability in Usagi Project MyNETS 1.2.0 and earlier allows remote attackers to inject arb... |
| CVE-2008-4628 | — | — | 1.0% | Oct 21, 2008 | SQL injection vulnerability in del.php in myWebland miniBloggie 1.0 allows remote attackers to execute arbitrary SQL com... |
| CVE-2008-4627 | — | — | 1.0% | Oct 21, 2008 | SQL injection vulnerability in the rGallery plugin 1.09 for WoltLab Burning Board (WBB) allows remote attackers to execu... |
| CVE-2008-4626 | — | — | 5.0% | Oct 21, 2008 | Directory traversal vulnerability in index.php in Fritz Berger yet another php photo album - next generation (yappa-ng) ... |
| CVE-2008-4625 | — | — | 2.7% | Oct 21, 2008 | SQL injection vulnerability in stnl_iframe.php in the ShiftThis Newsletter (st_newsletter) plugin for WordPress allows r... |
| CVE-2008-4624 | — | — | 3.6% | Oct 21, 2008 | PHP remote file inclusion vulnerability in init.php in Fast Click SQL Lite 1.1.7, when register_globals is enabled, allo... |
| CVE-2008-4623 | — | — | 1.2% | Oct 21, 2008 | SQL injection vulnerability in the DS-Syndicate (com_ds-syndicate) component 1.1.1 for Joomla allows remote attackers to... |
| CVE-2008-4622 | — | — | 3.1% | Oct 21, 2008 | The isLoggedIn function in fastnews-code.php in phpFastNews 1.0.0 allows remote attackers to bypass authentication and g... |
| CVE-2008-4621 | — | — | 1.2% | Oct 21, 2008 | SQL injection vulnerability in bannerclick.php in ZeeScripts Zeeproperty allows remote attackers to execute arbitrary SQ... |
| CVE-2008-4620 | — | — | 1.0% | Oct 21, 2008 | SQL injection vulnerability in Meeting Room Booking System (MRBS) before 1.4 allows remote attackers to execute arbitrar... |
| CVE-2008-1547 | — | — | 45.9% | Oct 21, 2008 | Open redirect vulnerability in exchweb/bin/redir.asp in Microsoft Outlook Web Access (OWA) for Exchange Server 2003 SP2 ... |
| CVE-2008-4619 | — | — | 12.0% | Oct 21, 2008 | The RPC subsystem in Sun Solaris 9 allows remote attackers to cause a denial of service (daemon crash) via a crafted req... |
| CVE-2008-4618 | — | — | 2.7% | Oct 21, 2008 | The Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.27 does not properly handl... |
| CVE-2008-4617 | — | — | 1.0% | Oct 20, 2008 | SQL injection vulnerability in the actualite module 1.0 for Joomla! allows remote attackers to execute arbitrary SQL com... |
| CVE-2008-4616 | — | — | 7.3% | Oct 20, 2008 | The SpamBam plugin for WordPress allows remote attackers to bypass restrictions and add blog comments by using server-su... |
| CVE-2008-4615 | — | — | 1.2% | Oct 20, 2008 | Unspecified vulnerability in i_utils.asp in PortalApp before 4.01a has unknown impact and attack vectors. |
| CVE-2008-4614 | — | — | 3.3% | Oct 20, 2008 | PortalApp 4.0 does not require authentication for (1) forums.asp and (2) content.asp, which allows remote attackers to c... |
| CVE-2008-4613 | — | — | 2.4% | Oct 20, 2008 | SQL injection vulnerability in forums.asp in PortalApp 4.0 allows remote attackers to execute arbitrary SQL commands via... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now