2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-4622——The isLoggedIn function in fastnews-code.php in phpFastNews 1.0.0 allows remote attackers to bypass authentication and g...
CVE-2008-4621——SQL injection vulnerability in bannerclick.php in ZeeScripts Zeeproperty allows remote attackers to execute arbitrary SQ...
CVE-2008-4620——SQL injection vulnerability in Meeting Room Booking System (MRBS) before 1.4 allows remote attackers to execute arbitrar...
CVE-2008-1547——Open redirect vulnerability in exchweb/bin/redir.asp in Microsoft Outlook Web Access (OWA) for Exchange Server 2003 SP2 ...
CVE-2008-4619——The RPC subsystem in Sun Solaris 9 allows remote attackers to cause a denial of service (daemon crash) via a crafted req...
CVE-2008-4618——The Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.27 does not properly handl...
CVE-2008-4617——SQL injection vulnerability in the actualite module 1.0 for Joomla! allows remote attackers to execute arbitrary SQL com...
CVE-2008-4616——The SpamBam plugin for WordPress allows remote attackers to bypass restrictions and add blog comments by using server-su...
CVE-2008-4615——Unspecified vulnerability in i_utils.asp in PortalApp before 4.01a has unknown impact and attack vectors.
CVE-2008-4614——PortalApp 4.0 does not require authentication for (1) forums.asp and (2) content.asp, which allows remote attackers to c...
CVE-2008-4613——SQL injection vulnerability in forums.asp in PortalApp 4.0 allows remote attackers to execute arbitrary SQL commands via...
CVE-2008-4612——Cross-site scripting (XSS) vulnerability in PortalApp 4.0 allows remote attackers to inject arbitrary web script or HTML...
CVE-2008-4611——SQL injection vulnerability in index.php in PHP Arsivimiz Php Ziyaretci Defteri allows remote attackers to execute arbit...
CVE-2008-4610——MPlayer allows remote attackers to cause a denial of service (application crash) via (1) a malformed AAC file, as demons...
CVE-2008-4609——The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and pro...
CVE-2008-3831——The i915 driver in (1) drivers/char/drm/i915_dma.c in the Linux kernel 2.6.24 on Debian GNU/Linux and (2) sys/dev/pci/dr...
CVE-2008-4606——Multiple SQL injection vulnerabilities in IP Reg 0.4 and earlier allow remote attackers to execute arbitrary SQL command...
CVE-2008-4605——SQL injection vulnerability in CafeEngine allows remote attackers to execute arbitrary SQL commands via the id parameter...
CVE-2008-4604——SQL injection vulnerability in index.php in Easy CafeEngine 1.1 allows remote attackers to execute arbitrary SQL command...
CVE-2008-4603——SQL injection vulnerability in search.php in iGaming CMS 2.0 Alpha 1 allows remote attackers to execute arbitrary SQL co...
CVE-2008-4602——Directory traversal vulnerability in index.php in Post Affiliate Pro 2.0 allows remote authenticated users to read and p...
CVE-2008-4601——Cross-site scripting (XSS) vulnerability in the login feature in Habari CMS 0.5.1 allows remote attackers to inject arbi...
CVE-2008-4600——configure.php in PokerMax Poker League Tournament Script 0.13 allows remote attackers to bypass authentication and gain ...
CVE-2008-4599——SQL injection vulnerability in category.php in Mosaic Commerce allows remote attackers to execute arbitrary SQL commands...
CVE-2008-4598——Unspecified vulnerability in Shindig-Integrator 5.x, a module for Drupal, has unspecified impact and remote attack vecto...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now