2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-4438 | — | — | 1.5% | Oct 3, 2008 | Cross-site scripting (XSS) vulnerability in search.php in Datafeed Studio 1.6.2 allows remote attackers to inject arbitr... |
| CVE-2008-4437 | — | — | 5.6% | Oct 3, 2008 | Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is... |
| CVE-2008-4436 | — | — | 1.0% | Oct 3, 2008 | SQL injection vulnerability in bblog_plugins/builtin.help.php in bBlog 0.7.6 allows remote attackers to execute arbitrar... |
| CVE-2008-4435 | — | — | 1.5% | Oct 3, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in the RMSOFT Downloads Plus (rmdp) module 1.5 and 1.7 for Xoops all... |
| CVE-2008-4434 | — | — | 11.0% | Oct 3, 2008 | Stack-based buffer overflow in (1) uTorrent 1.7.7 build 8179 and earlier and (2) BitTorrent 6.0.3 build 8642 and earlier... |
| CVE-2008-4433 | — | — | 1.0% | Oct 3, 2008 | SQL injection vulnerability in search.php in the RMSOFT MiniShop module 1.0 for Xoops might allow remote attackers to ex... |
| CVE-2008-4432 | — | — | 1.4% | Oct 3, 2008 | Cross-site scripting (XSS) vulnerability in search.php in the RMSOFT MiniShop module 1.0 for Xoops allows remote attacke... |
| CVE-2008-4431 | — | — | 1.1% | Oct 3, 2008 | SQL injection vulnerability in index.php in IceBB 1.0-rc9.3 and earlier allows remote attackers to execute arbitrary SQL... |
| CVE-2008-4430 | — | — | — | Oct 3, 2008 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-3699. Reason: This candidate is a duplicate of... |
| CVE-2008-4429 | — | — | 2.6% | Oct 3, 2008 | Unspecified vulnerability in SOURCENEXT Virus Security ZERO 9.5.0173 and earlier and Virus Security 9.5.0173 and earlier... |
| CVE-2008-4428 | — | — | 7.0% | Oct 3, 2008 | Unrestricted file upload vulnerability in upload.php in Phlatline's Personal Information Manager (pPIM) 1.0 and earlier ... |
| CVE-2008-4427 | — | — | 3.0% | Oct 3, 2008 | changepassword.php in Phlatline's Personal Information Manager (pPIM) 1.0 and earlier does not require administrative au... |
| CVE-2008-4426 | — | — | 1.6% | Oct 3, 2008 | Cross-site scripting (XSS) vulnerability in events.php in Phlatline's Personal Information Manager (pPIM) 1.0 allows rem... |
| CVE-2008-4425 | — | — | 3.0% | Oct 3, 2008 | Directory traversal vulnerability in upload.php in Phlatline's Personal Information Manager (pPIM) 1.0 allows remote att... |
| CVE-2008-4424 | — | — | 1.5% | Oct 3, 2008 | Cross-site scripting (XSS) vulnerability in index.php in Domain Group Network GooCMS 1.02 allows remote attackers to inj... |
| CVE-2008-4423 | — | — | 1.1% | Oct 3, 2008 | SQL injection vulnerability in index.php in Ovidentia 6.6.5 allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2008-4383 | — | — | 8.2% | Oct 3, 2008 | Stack-based buffer overflow in the Agranet-Emweb embedded management web server in Alcatel OmniSwitch OS7000, OS6600, OS... |
| CVE-2008-4410 | — | — | 0.4% | Oct 3, 2008 | The vmi_write_ldt_entry function in arch/x86/kernel/vmi_32.c in the Virtual Machine Interface (VMI) in the Linux kernel ... |
| CVE-2008-4409 | — | — | 8.5% | Oct 3, 2008 | libxml2 2.7.0 and 2.7.1 does not properly handle "predefined entities definitions" in entities, which allows context-dep... |
| CVE-2008-4408 | — | — | 1.6% | Oct 3, 2008 | Cross-site scripting (XSS) vulnerability in MediaWiki 1.13.1, 1.12.0, and possibly other versions before 1.13.2 allows r... |
| CVE-2008-4407 | — | — | 0.3% | Oct 3, 2008 | XRunSabre in sabre (aka xsabre) 0.2.4b relies on the ability to create /tmp/sabre.log, which allows local users to cause... |
| CVE-2008-4406 | — | — | 0.3% | Oct 3, 2008 | A certain Debian patch to the run scripts for sabre (aka xsabre) 0.2.4b allows local users to delete or overwrite arbitr... |
| CVE-2008-4405 | — | — | 1.0% | Oct 3, 2008 | xend in Xen 3.0.3 does not properly limit the contents of the /local/domain xenstore directory tree, and does not proper... |
| CVE-2008-4360 | — | — | 4.3% | Oct 3, 2008 | mod_userdir in lighttpd before 1.4.20, when a case-insensitive operating system or filesystem is used, performs case-sen... |
| CVE-2008-4359 | — | — | 4.3% | Oct 3, 2008 | lighttpd before 1.4.20 compares URIs to patterns in the (1) url.redirect and (2) url.rewrite configuration settings befo... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now