2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-4646 | — | — | 0.3% | Oct 22, 2008 | The Websense Reporter Module in Websense Enterprise 6.3.2 stores the SQL database system administrator password in plain... |
| CVE-2008-4645 | — | — | 7.1% | Oct 22, 2008 | plugins/event_tracer/event_list.php in PhpWebGallery 1.7.2 and earlier allows remote authenticated administrators to exe... |
| CVE-2008-4644 | — | — | 2.6% | Oct 22, 2008 | hits.php in myWebland myStats allows remote attackers to bypass IP address restrictions via a modified X-Forwarded-For H... |
| CVE-2008-4643 | — | — | 1.0% | Oct 22, 2008 | SQL injection vulnerability in hits.php in myWebland myStats allows remote attackers to execute arbitrary SQL commands v... |
| CVE-2008-4642 | — | — | 1.0% | Oct 21, 2008 | SQL injection vulnerability in profile.php in AstroSPACES 1.1.1 allows remote attackers to execute arbitrary SQL command... |
| CVE-2008-4641 | — | — | 2.2% | Oct 21, 2008 | The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows attackers to execute arbitrary comman... |
| CVE-2008-4640 | — | — | 0.3% | Oct 21, 2008 | The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to delete arbitrary files... |
| CVE-2008-4639 | — | — | 0.3% | Oct 21, 2008 | jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to overwrite arbitrary files via a symlink attack o... |
| CVE-2008-4638 | — | — | 0.3% | Oct 21, 2008 | qioadmin in the Quick I/O for Database feature in Symantec Veritas File System (VxFS) on HP-UX, and before 5.0 MP3 on So... |
| CVE-2008-4637 | — | — | 0.8% | Oct 21, 2008 | Cross-site scripting (XSS) vulnerability in cpCommerce before 1.2.4 allows remote attackers to inject arbitrary web scri... |
| CVE-2008-4121 | — | — | 1.3% | Oct 21, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in cpCommerce before 1.2.4 allow remote attackers to inject arbitrar... |
| CVE-2008-3248 | — | — | 0.3% | Oct 21, 2008 | qiomkfile in the Quick I/O for Database feature in Symantec Veritas File System (VxFS) on HP-UX, and before 5.0 MP3 on S... |
| CVE-2008-4635 | — | — | 1.4% | Oct 21, 2008 | Unspecified vulnerability in Hisanaga Electric Co, Ltd. hisa_cart 1.29 and earlier, a module for XOOPS, allows remote at... |
| CVE-2008-4634 | — | — | 1.0% | Oct 21, 2008 | Cross-site scripting (XSS) vulnerability in Movable Type 4 through 4.21 allows remote attackers to inject arbitrary web ... |
| CVE-2008-4633 | — | — | 0.8% | Oct 21, 2008 | SQL injection vulnerability in Node Vote 5.x before 5.x-1.1 and 6.x before 6.x-1.0, a module for Drupal, when "Allow use... |
| CVE-2008-4632 | — | — | 1.9% | Oct 21, 2008 | Multiple directory traversal vulnerabilities in index.php in Kure 0.6.3, when magic_quotes_gpc is disabled, allow remote... |
| CVE-2008-4631 | — | — | 4.8% | Oct 21, 2008 | Stack-based buffer overflow in the Message::AddToString function in message/Message.cpp in MUSCLE before 4.40 allows rem... |
| CVE-2008-4630 | — | — | 1.5% | Oct 21, 2008 | Multiple unspecified vulnerabilities in Midgard Components (MidCOM) Framework before 8.09.1 have unknown impact and atta... |
| CVE-2008-4629 | — | — | 1.2% | Oct 21, 2008 | Cross-site scripting (XSS) vulnerability in Usagi Project MyNETS 1.2.0 and earlier allows remote attackers to inject arb... |
| CVE-2008-4628 | — | — | 1.0% | Oct 21, 2008 | SQL injection vulnerability in del.php in myWebland miniBloggie 1.0 allows remote attackers to execute arbitrary SQL com... |
| CVE-2008-4627 | — | — | 1.0% | Oct 21, 2008 | SQL injection vulnerability in the rGallery plugin 1.09 for WoltLab Burning Board (WBB) allows remote attackers to execu... |
| CVE-2008-4626 | — | — | 5.0% | Oct 21, 2008 | Directory traversal vulnerability in index.php in Fritz Berger yet another php photo album - next generation (yappa-ng) ... |
| CVE-2008-4625 | — | — | 2.7% | Oct 21, 2008 | SQL injection vulnerability in stnl_iframe.php in the ShiftThis Newsletter (st_newsletter) plugin for WordPress allows r... |
| CVE-2008-4624 | — | — | 3.6% | Oct 21, 2008 | PHP remote file inclusion vulnerability in init.php in Fast Click SQL Lite 1.1.7, when register_globals is enabled, allo... |
| CVE-2008-4623 | — | — | 1.2% | Oct 21, 2008 | SQL injection vulnerability in the DS-Syndicate (com_ds-syndicate) component 1.1.1 for Joomla allows remote attackers to... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now