2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-7141 | — | — | 1.4% | Sep 1, 2009 | Cross-site scripting (XSS) vulnerability in setup.php in @lex Poll 2.1 allows remote attackers to inject arbitrary web s... |
| CVE-2008-7140 | — | — | 1.5% | Sep 1, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in @lex Guestbook 4.0.5 and earlier allow remote attackers to inject... |
| CVE-2008-7139 | — | — | 0.7% | Sep 1, 2009 | Multiple cross-site request forgery (CSRF) vulnerabilities in WS-Proxy in Eye-Fi 1.1.2 allow remote attackers to hijack ... |
| CVE-2008-7138 | — | — | 1.3% | Sep 1, 2009 | The Manager in Eye-Fi 1.1.2 generates predictable snonce values based on the time of day, which allows remote attackers ... |
| CVE-2008-7137 | — | — | 1.7% | Sep 1, 2009 | WS-Proxy in Eye-Fi 1.1.2 allows remote attackers to cause a denial of service (crash) via an empty query string to port ... |
| CVE-2008-7136 | — | — | 4.2% | Sep 1, 2009 | toolbaru.dll in ICQ Toolbar (ICQToolbar) 2.3 allows remote attackers to cause a denial of service (toolbar crash) via a ... |
| CVE-2008-7135 | — | — | 2.1% | Sep 1, 2009 | toolbaru.dll in ICQ Toolbar (ICQToolbar) 2.3 allows remote attackers to cause a denial of service (toolbar crash) via a ... |
| CVE-2008-7134 | — | — | 1.5% | Sep 1, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the default URI in Chris LaPointe RedGalaxy Download Center 1.2 a... |
| CVE-2008-7133 | — | — | 1.5% | Sep 1, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in onlinetools.org EasyImageCatalogue 1.3.1 allow remote attackers t... |
| CVE-2008-7132 | — | — | 1.1% | Sep 1, 2009 | Cross-site scripting (XSS) vulnerability in index.php in Nuked-Klan 1.3 beta allows remote attackers to inject arbitrary... |
| CVE-2008-7131 | — | — | 1.2% | Aug 31, 2009 | Unspecified vulnerability in DB2 Monitoring Console 2.2.4 and earlier allows remote attackers to gain access to a databa... |
| CVE-2008-7130 | — | — | 1.2% | Aug 31, 2009 | Unspecified vulnerability in DB2 Monitoring Console 2.2.4 and earlier allows remote attackers to upload arbitrary files ... |
| CVE-2008-7129 | — | — | 0.9% | Aug 31, 2009 | XySSL before 0.9 allows remote attackers to cause a denial of service (infinite loop) via an X.509 certificate that does... |
| CVE-2008-7128 | — | — | 1.4% | Aug 31, 2009 | The ssl_parse_client_key_exchange function in XySSL before 0.9 does not protect against certain Bleichenbacher attacks u... |
| CVE-2008-7127 | — | — | 2.2% | Aug 31, 2009 | osagent.exe in Borland VisiBroker Smart Agent 08.00.00.C1.03 and earlier allows remote attackers to cause a denial of se... |
| CVE-2008-7126 | — | — | 10.0% | Aug 31, 2009 | Integer overflow in osagent.exe in Borland VisiBroker Smart Agent 08.00.00.C1.03 and earlier allows remote attackers to ... |
| CVE-2008-7125 | — | — | 2.2% | Aug 31, 2009 | pphoto in Ariadne before 2.6 allows remote authenticated users with certain privileges to execute arbitrary shell comman... |
| CVE-2008-7124 | — | — | 8.6% | Aug 31, 2009 | zKup CMS 2.0 through 2.3 does not require administrative authentication for admin/configuration/modifier.php, which allo... |
| CVE-2008-7123 | — | — | 4.1% | Aug 31, 2009 | Static code injection vulnerability in admin/configuration/modifier.php in zKup CMS 2.0 through 2.3 allows remote attack... |
| CVE-2008-7122 | — | — | 3.1% | Aug 31, 2009 | Multiple insecure method vulnerabilities in an ActiveX control in (epRegPro.ocx) in Evans Programming Registry Pro allow... |
| CVE-2008-7121 | — | — | 0.9% | Aug 28, 2009 | Cross-site scripting (XSS) vulnerability in Mr. CGI Guy Hot Links SQL-PHP 3 and earlier allows remote attackers to injec... |
| CVE-2008-7120 | — | — | 0.9% | Aug 28, 2009 | SQL injection vulnerability in Mr. CGI Guy Hot Links SQL-PHP 3 and earlier allows remote attackers to execute arbitrary ... |
| CVE-2008-7119 | — | — | 1.0% | Aug 28, 2009 | SQL injection vulnerability in item.php in WeBid auction script 0.5.4 allows remote attackers to execute arbitrary SQL c... |
| CVE-2008-7118 | — | — | 2.4% | Aug 28, 2009 | WeBid auction script 0.5.4 stores sensitive information under the web root with insufficient access control, which allow... |
| CVE-2008-7117 | — | — | 1.7% | Aug 28, 2009 | eledicss.php in WeBid auction script 0.5.4 allows remote attackers to modify arbitrary cascading style sheets (CSS) file... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now