2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-4622 | — | — | 3.1% | Oct 21, 2008 | The isLoggedIn function in fastnews-code.php in phpFastNews 1.0.0 allows remote attackers to bypass authentication and g... |
| CVE-2008-4621 | — | — | 1.2% | Oct 21, 2008 | SQL injection vulnerability in bannerclick.php in ZeeScripts Zeeproperty allows remote attackers to execute arbitrary SQ... |
| CVE-2008-4620 | — | — | 1.0% | Oct 21, 2008 | SQL injection vulnerability in Meeting Room Booking System (MRBS) before 1.4 allows remote attackers to execute arbitrar... |
| CVE-2008-1547 | — | — | 45.9% | Oct 21, 2008 | Open redirect vulnerability in exchweb/bin/redir.asp in Microsoft Outlook Web Access (OWA) for Exchange Server 2003 SP2 ... |
| CVE-2008-4619 | — | — | 12.0% | Oct 21, 2008 | The RPC subsystem in Sun Solaris 9 allows remote attackers to cause a denial of service (daemon crash) via a crafted req... |
| CVE-2008-4618 | — | — | 2.7% | Oct 21, 2008 | The Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.27 does not properly handl... |
| CVE-2008-4617 | — | — | 1.0% | Oct 20, 2008 | SQL injection vulnerability in the actualite module 1.0 for Joomla! allows remote attackers to execute arbitrary SQL com... |
| CVE-2008-4616 | — | — | 7.3% | Oct 20, 2008 | The SpamBam plugin for WordPress allows remote attackers to bypass restrictions and add blog comments by using server-su... |
| CVE-2008-4615 | — | — | 1.2% | Oct 20, 2008 | Unspecified vulnerability in i_utils.asp in PortalApp before 4.01a has unknown impact and attack vectors. |
| CVE-2008-4614 | — | — | 3.3% | Oct 20, 2008 | PortalApp 4.0 does not require authentication for (1) forums.asp and (2) content.asp, which allows remote attackers to c... |
| CVE-2008-4613 | — | — | 2.4% | Oct 20, 2008 | SQL injection vulnerability in forums.asp in PortalApp 4.0 allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2008-4612 | — | — | 2.3% | Oct 20, 2008 | Cross-site scripting (XSS) vulnerability in PortalApp 4.0 allows remote attackers to inject arbitrary web script or HTML... |
| CVE-2008-4611 | — | — | 1.0% | Oct 20, 2008 | SQL injection vulnerability in index.php in PHP Arsivimiz Php Ziyaretci Defteri allows remote attackers to execute arbit... |
| CVE-2008-4610 | — | — | 9.3% | Oct 20, 2008 | MPlayer allows remote attackers to cause a denial of service (application crash) via (1) a malformed AAC file, as demons... |
| CVE-2008-4609 | — | — | 32.1% | Oct 20, 2008 | The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and pro... |
| CVE-2008-3831 | — | — | 0.5% | Oct 20, 2008 | The i915 driver in (1) drivers/char/drm/i915_dma.c in the Linux kernel 2.6.24 on Debian GNU/Linux and (2) sys/dev/pci/dr... |
| CVE-2008-4606 | — | — | 1.1% | Oct 18, 2008 | Multiple SQL injection vulnerabilities in IP Reg 0.4 and earlier allow remote attackers to execute arbitrary SQL command... |
| CVE-2008-4605 | — | — | 1.0% | Oct 18, 2008 | SQL injection vulnerability in CafeEngine allows remote attackers to execute arbitrary SQL commands via the id parameter... |
| CVE-2008-4604 | — | — | 1.0% | Oct 18, 2008 | SQL injection vulnerability in index.php in Easy CafeEngine 1.1 allows remote attackers to execute arbitrary SQL command... |
| CVE-2008-4603 | — | — | 1.0% | Oct 18, 2008 | SQL injection vulnerability in search.php in iGaming CMS 2.0 Alpha 1 allows remote attackers to execute arbitrary SQL co... |
| CVE-2008-4602 | — | — | 2.1% | Oct 18, 2008 | Directory traversal vulnerability in index.php in Post Affiliate Pro 2.0 allows remote authenticated users to read and p... |
| CVE-2008-4601 | — | — | 3.0% | Oct 18, 2008 | Cross-site scripting (XSS) vulnerability in the login feature in Habari CMS 0.5.1 allows remote attackers to inject arbi... |
| CVE-2008-4600 | — | — | 2.7% | Oct 18, 2008 | configure.php in PokerMax Poker League Tournament Script 0.13 allows remote attackers to bypass authentication and gain ... |
| CVE-2008-4599 | — | — | 1.0% | Oct 18, 2008 | SQL injection vulnerability in category.php in Mosaic Commerce allows remote attackers to execute arbitrary SQL commands... |
| CVE-2008-4598 | — | — | 1.1% | Oct 17, 2008 | Unspecified vulnerability in Shindig-Integrator 5.x, a module for Drupal, has unspecified impact and remote attack vecto... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now