2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-3782Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in ACG-PTP 1.0.6 allow remote authenticated admin...
CVE-2008-3783Multiple SQL injection vulnerabilities in index.php in Matterdaddy Market 1.1, when magic_quotes_gpc is disabled, allow ...
CVE-2008-3784SQL injection vulnerability in scrape.php in BtiTracker 1.4.7 and earlier and xBtiTracker 2.0.542 and earlier allows rem...
CVE-2008-3785Multiple SQL injection vulnerabilities in the com_content component in MiaCMS 4.6.5 allow remote attackers to execute ar...
CVE-2008-3786Cross-site scripting (XSS) vulnerability in index.php in PICTURESPRO Photo Cart 3.9 allows remote attackers to inject ar...
CVE-2008-3787SQL injection vulnerability in listing_view.php in Web Directory Script 2.0 and earlier allows remote attackers to execu...
CVE-2008-3788Multiple SQL injection vulnerabilities in PICTURESPRO Photo Cart 3.9, when magic_quotes_gpc is disabled, allow remote at...
CVE-2008-3779Cross-site scripting (XSS) vulnerability in search/index.php in Five Star Review Script allows remote attackers to injec...
CVE-2008-3776Directory traversal vulnerability in Fujitsu Web-Based Admin View 2.1.2 allows remote attackers to read arbitrary files ...
CVE-2008-3778The remote management interface in SIP Enablement Services (SES) Server in Avaya SIP Enablement Services 5.0, and Commun...
CVE-2008-3777The SIP Enablement Services (SES) Server in Avaya SIP Enablement Services 5.0, and Communication Manager (CM) 5.0 on the...
CVE-2008-3775MEDIUM4.4Folder Lock 5.9.5 and earlier uses weak encryption (ROT-25) for the password, which allows local administrators to obtai...
CVE-2008-3774SQL injection vulnerability in index.php in Simasy CMS allows remote attackers to execute arbitrary SQL commands via the...
CVE-2008-3773Cross-site scripting (XSS) vulnerability in vBulletin 3.7.2 PL1 and 3.6.10 PL3, when "Show New Private Message Notificat...
CVE-2008-3772SQL injection vulnerability in categories_portal.php in Pars4u Videosharing 1 allows remote attackers to execute arbitra...
CVE-2008-3771Cross-site scripting (XSS) vulnerability in members.php in Pars4u Videosharing 1 allows remote attackers to inject arbit...
CVE-2008-3770Multiple directory traversal vulnerabilities in Freeway 1.4.1.171, when register_globals is enabled, allow remote attack...
CVE-2008-3769PHP remote file inclusion vulnerability in admin/create_order_new.php in Freeway 1.4.1.171, when register_globals is ena...
CVE-2008-3768Multiple SQL injection vulnerabilities in class.ajax.php in Turnkey Web Tools SunShop Shopping Cart before 4.1.5 allow r...
CVE-2008-3767SQL injection vulnerability in classified.php in phpBazar 2.0.2 allows remote attackers to execute arbitrary SQL command...
CVE-2008-3766Realtime Internet Band Rehearsal Low-Latency (Internet) Connection tool (llcon) before 2.1.2 allows remote attackers to ...
CVE-2008-3749SQL injection vulnerability in tr.php in YourFreeWorld Banner Management Script allows remote attackers to execute arbit...
CVE-2008-3765SQL injection vulnerability in code.php in Quick Poll Script allows remote attackers to execute arbitrary SQL commands v...
CVE-2008-3764Eval injection vulnerability in globalsoff.php in Turnkey PHP Live Helper 2.0.1 and earlier allows remote attackers to e...
CVE-2008-3763Variable overwrite vulnerability in libsecure.php in Turnkey PHP Live Helper 2.0.1 and earlier, when register_globals is...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now