2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-7141——Cross-site scripting (XSS) vulnerability in setup.php in @lex Poll 2.1 allows remote attackers to inject arbitrary web s...
CVE-2008-7140——Multiple cross-site scripting (XSS) vulnerabilities in @lex Guestbook 4.0.5 and earlier allow remote attackers to inject...
CVE-2008-7139——Multiple cross-site request forgery (CSRF) vulnerabilities in WS-Proxy in Eye-Fi 1.1.2 allow remote attackers to hijack ...
CVE-2008-7138——The Manager in Eye-Fi 1.1.2 generates predictable snonce values based on the time of day, which allows remote attackers ...
CVE-2008-7137——WS-Proxy in Eye-Fi 1.1.2 allows remote attackers to cause a denial of service (crash) via an empty query string to port ...
CVE-2008-7136——toolbaru.dll in ICQ Toolbar (ICQToolbar) 2.3 allows remote attackers to cause a denial of service (toolbar crash) via a ...
CVE-2008-7135——toolbaru.dll in ICQ Toolbar (ICQToolbar) 2.3 allows remote attackers to cause a denial of service (toolbar crash) via a ...
CVE-2008-7134——Multiple cross-site scripting (XSS) vulnerabilities in the default URI in Chris LaPointe RedGalaxy Download Center 1.2 a...
CVE-2008-7133——Multiple cross-site scripting (XSS) vulnerabilities in onlinetools.org EasyImageCatalogue 1.3.1 allow remote attackers t...
CVE-2008-7132——Cross-site scripting (XSS) vulnerability in index.php in Nuked-Klan 1.3 beta allows remote attackers to inject arbitrary...
CVE-2008-7131——Unspecified vulnerability in DB2 Monitoring Console 2.2.4 and earlier allows remote attackers to gain access to a databa...
CVE-2008-7130——Unspecified vulnerability in DB2 Monitoring Console 2.2.4 and earlier allows remote attackers to upload arbitrary files ...
CVE-2008-7129——XySSL before 0.9 allows remote attackers to cause a denial of service (infinite loop) via an X.509 certificate that does...
CVE-2008-7128——The ssl_parse_client_key_exchange function in XySSL before 0.9 does not protect against certain Bleichenbacher attacks u...
CVE-2008-7127——osagent.exe in Borland VisiBroker Smart Agent 08.00.00.C1.03 and earlier allows remote attackers to cause a denial of se...
CVE-2008-7126——Integer overflow in osagent.exe in Borland VisiBroker Smart Agent 08.00.00.C1.03 and earlier allows remote attackers to ...
CVE-2008-7125——pphoto in Ariadne before 2.6 allows remote authenticated users with certain privileges to execute arbitrary shell comman...
CVE-2008-7124——zKup CMS 2.0 through 2.3 does not require administrative authentication for admin/configuration/modifier.php, which allo...
CVE-2008-7123——Static code injection vulnerability in admin/configuration/modifier.php in zKup CMS 2.0 through 2.3 allows remote attack...
CVE-2008-7122——Multiple insecure method vulnerabilities in an ActiveX control in (epRegPro.ocx) in Evans Programming Registry Pro allow...
CVE-2008-7121——Cross-site scripting (XSS) vulnerability in Mr. CGI Guy Hot Links SQL-PHP 3 and earlier allows remote attackers to injec...
CVE-2008-7120——SQL injection vulnerability in Mr. CGI Guy Hot Links SQL-PHP 3 and earlier allows remote attackers to execute arbitrary ...
CVE-2008-7119——SQL injection vulnerability in item.php in WeBid auction script 0.5.4 allows remote attackers to execute arbitrary SQL c...
CVE-2008-7118——WeBid auction script 0.5.4 stores sensitive information under the web root with insufficient access control, which allow...
CVE-2008-7117——eledicss.php in WeBid auction script 0.5.4 allows remote attackers to modify arbitrary cascading style sheets (CSS) file...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now