2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-7090——Multiple directory traversal vulnerabilities in Pligg 9.9 and earlier allow remote attackers to (1) determine the existe...
CVE-2008-7089——Cross-site scripting (XSS) vulnerability in Pligg 9.9 and earlier allows remote attackers to inject arbitrary web script...
CVE-2008-7088——Unrestricted file upload vulnerability in upload.php in PhotoPost vBGallery 2.4.2 allows remote authenticated users to e...
CVE-2008-7087——PHP remote file inclusion vulnerability in search_wA.php in OpenPro 1.3.1 allows remote attackers to execute arbitrary P...
CVE-2008-7086——Maian Greetings 2.1 allows remote attackers to bypass authentication and gain administrative privileges by setting the m...
CVE-2008-7085——Multiple SQL injection vulnerabilities in TheHockeyStop HockeySTATS Online 2.0 Basic and Advanced allow remote attackers...
CVE-2008-7084——Directory traversal vulnerability in the web server 1.0 in Velocity Security Management System allows remote attackers t...
CVE-2008-7083——Multiple SQL injection vulnerabilities in ReVou Micro Blogging Twitter clone allow remote attackers to execute arbitrary...
CVE-2008-7082——MyBB (aka MyBulletinBoard) 1.4.3 includes the sensitive my_post_key parameter in URLs to moderation.php with the (1) mer...
CVE-2008-7081——userHandler.cgi in RaidSonic ICY BOX NAS firmware 2.3.2.IB.2.RS.1 allows remote attackers to bypass authentication and g...
CVE-2008-7080——Team PHP PHP Classifieds Script stores sensitive information under the web root with insufficient access control, which ...
CVE-2008-7079——Buffer overflow in Nero ShowTime 5.0.15.0 allows remote attackers to cause a denial of service (crash) and possibly exec...
CVE-2008-7078——Multiple buffer overflows in Rumpus before 6.0.1 allow remote attackers to (1) cause a denial of service (segmentation f...
CVE-2008-7077——Multiple SQL injection vulnerabilities in SailPlanner 0.3a allow remote attackers to execute arbitrary SQL commands via ...
CVE-2008-7076——Unrestricted file upload vulnerability in user.modify.profile.php in Kalptaru Infotech Ltd. Star Articles 6.0 allows rem...
CVE-2008-7075——Multiple SQL injection vulnerabilities in Kalptaru Infotech Ltd. Star Articles 6.0 allow remote attackers to inject arbi...
CVE-2008-7074——Format string vulnerability in MemeCode Software i.Scribe 1.88 through 2.00 before Beta9 allows remote SMTP servers to c...
CVE-2008-7073——PHP remote file inclusion vulnerability in lib/action/rss.php in RSS module 0.1 for Pie Web M{a,e}sher, when register_gl...
CVE-2008-7072——Cross-site scripting (XSS) vulnerability in index.php in Chipmunk Topsites allows remote attackers to inject arbitrary w...
CVE-2008-7071——SQL injection vulnerability in authenticate.php in Chipmunk Topsites allows remote attackers to execute arbitrary SQL co...
CVE-2008-7070——Argument injection vulnerability in the URI handler in KVIrc 3.4.2 Shiny allows remote attackers to execute arbitrary co...
CVE-2008-7069——All Club CMS (ACCMS) 0.0.2 and earlier stores sensitive information under the web root with insufficient access control,...
CVE-2008-7068——The dba_replace function in PHP 5.2.6 and 4.x allows context-dependent attackers to cause a denial of service (file trun...
CVE-2008-7067——PHP remote file inclusion vulnerability in admin/plugins/Online_Users/main.php in PageTree CMS 0.0.2 BETA 0001 allows re...
CVE-2008-7066——OpenForum 0.66 Beta allows remote attackers to bypass authentication and reset passwords of other users via a direct req...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now