2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-4622The isLoggedIn function in fastnews-code.php in phpFastNews 1.0.0 allows remote attackers to bypass authentication and g...
CVE-2008-4621SQL injection vulnerability in bannerclick.php in ZeeScripts Zeeproperty allows remote attackers to execute arbitrary SQ...
CVE-2008-4620SQL injection vulnerability in Meeting Room Booking System (MRBS) before 1.4 allows remote attackers to execute arbitrar...
CVE-2008-1547Open redirect vulnerability in exchweb/bin/redir.asp in Microsoft Outlook Web Access (OWA) for Exchange Server 2003 SP2 ...
CVE-2008-4619The RPC subsystem in Sun Solaris 9 allows remote attackers to cause a denial of service (daemon crash) via a crafted req...
CVE-2008-4618The Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.27 does not properly handl...
CVE-2008-4617SQL injection vulnerability in the actualite module 1.0 for Joomla! allows remote attackers to execute arbitrary SQL com...
CVE-2008-4616The SpamBam plugin for WordPress allows remote attackers to bypass restrictions and add blog comments by using server-su...
CVE-2008-4615Unspecified vulnerability in i_utils.asp in PortalApp before 4.01a has unknown impact and attack vectors.
CVE-2008-4614PortalApp 4.0 does not require authentication for (1) forums.asp and (2) content.asp, which allows remote attackers to c...
CVE-2008-4613SQL injection vulnerability in forums.asp in PortalApp 4.0 allows remote attackers to execute arbitrary SQL commands via...
CVE-2008-4612Cross-site scripting (XSS) vulnerability in PortalApp 4.0 allows remote attackers to inject arbitrary web script or HTML...
CVE-2008-4611SQL injection vulnerability in index.php in PHP Arsivimiz Php Ziyaretci Defteri allows remote attackers to execute arbit...
CVE-2008-4610MPlayer allows remote attackers to cause a denial of service (application crash) via (1) a malformed AAC file, as demons...
CVE-2008-4609The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and pro...
CVE-2008-3831The i915 driver in (1) drivers/char/drm/i915_dma.c in the Linux kernel 2.6.24 on Debian GNU/Linux and (2) sys/dev/pci/dr...
CVE-2008-4606Multiple SQL injection vulnerabilities in IP Reg 0.4 and earlier allow remote attackers to execute arbitrary SQL command...
CVE-2008-4605SQL injection vulnerability in CafeEngine allows remote attackers to execute arbitrary SQL commands via the id parameter...
CVE-2008-4604SQL injection vulnerability in index.php in Easy CafeEngine 1.1 allows remote attackers to execute arbitrary SQL command...
CVE-2008-4603SQL injection vulnerability in search.php in iGaming CMS 2.0 Alpha 1 allows remote attackers to execute arbitrary SQL co...
CVE-2008-4602Directory traversal vulnerability in index.php in Post Affiliate Pro 2.0 allows remote authenticated users to read and p...
CVE-2008-4601Cross-site scripting (XSS) vulnerability in the login feature in Habari CMS 0.5.1 allows remote attackers to inject arbi...
CVE-2008-4600configure.php in PokerMax Poker League Tournament Script 0.13 allows remote attackers to bypass authentication and gain ...
CVE-2008-4599SQL injection vulnerability in category.php in Mosaic Commerce allows remote attackers to execute arbitrary SQL commands...
CVE-2008-4598Unspecified vulnerability in Shindig-Integrator 5.x, a module for Drupal, has unspecified impact and remote attack vecto...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now