2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-3582 | — | — | 0.9% | Aug 10, 2008 | SQL injection vulnerability in login.php in Keld PHP-MySQL News Script 0.7.1 allows remote attackers to execute arbitrar... |
| CVE-2008-3574 | — | — | 1.5% | Aug 10, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in Pluck 4.5.2, when register_globals is enabled, allow remote attac... |
| CVE-2008-3273 | — | — | 47.1% | Aug 10, 2008 | JBoss Enterprise Application Platform (aka JBossEAP or EAP) before 4.2.0.CP03, and 4.3.0 before 4.3.0.CP01, allows remot... |
| CVE-2008-3575 | — | — | 2.3% | Aug 10, 2008 | PHP remote file inclusion vulnerability in modules/calendar/minicalendar.php in ezContents CMS allows remote attackers t... |
| CVE-2008-3573 | — | — | 1.9% | Aug 10, 2008 | The CAPTCHA implementation in (1) Pligg 9.9.5 and possibly (2) Francisco Burzi PHP-Nuke 8.1 provides a critical random n... |
| CVE-2008-3572 | — | — | 1.1% | Aug 10, 2008 | Cross-site scripting (XSS) vulnerability in index.php in Pligg 9.9.5 allows remote attackers to inject arbitrary web scr... |
| CVE-2008-3571 | — | — | 35.7% | Aug 10, 2008 | The Xerox Phaser 8400 allows remote attackers to cause a denial of service (reboot) via an empty UDP packet to port 1900... |
| CVE-2008-3570 | — | — | 2.4% | Aug 10, 2008 | PHP remote file inclusion vulnerability in index.php in Africa Be Gone (ABG) 1.0a allows remote attackers to execute arb... |
| CVE-2008-3569 | — | — | 3.0% | Aug 10, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in XAMPP 1.6.7, when register_globals is enabled, allow remote attac... |
| CVE-2008-3568 | — | — | 2.9% | Aug 10, 2008 | Absolute path traversal vulnerability in fckeditor/editor/filemanager/browser/default/connectors/php/connector.php in UN... |
| CVE-2008-3567 | — | — | 1.9% | Aug 10, 2008 | Cross-zone scripting vulnerability in the NowPlaying functionality in NullSoft Winamp before 5.541 allows remote attacke... |
| CVE-2008-3566 | — | — | 1.5% | Aug 10, 2008 | Cross-site scripting (XSS) vulnerability in ZoneO-soft freeForum 1.7 allows remote attackers to inject arbitrary web scr... |
| CVE-2008-3565 | — | — | 1.5% | Aug 10, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in Meeting Room Booking System (MRBS) 1.2.6 allow remote attackers t... |
| CVE-2008-3564 | — | — | 2.5% | Aug 10, 2008 | Multiple directory traversal vulnerabilities in index.php in Dayfox Blog 4 allow remote attackers to include and execute... |
| CVE-2008-3563 | — | — | 2.4% | Aug 10, 2008 | Multiple SQL injection vulnerabilities in Plogger 3.0 and earlier allow remote attackers to execute arbitrary SQL comman... |
| CVE-2008-3562 | — | — | 1.9% | Aug 10, 2008 | Directory traversal vulnerability in index.php in the Contact module in Chupix CMS 0.1.0, when magic_quotes_gpc is disab... |
| CVE-2008-3561 | — | — | 0.9% | Aug 10, 2008 | SQL injection vulnerability in s03.php in Powergap Shopsystem, when magic_quotes_gpc is disabled, allows remote attacker... |
| CVE-2008-3550 | — | — | 1.2% | Aug 8, 2008 | The CQWeb login page in IBM Rational ClearQuest 7.0.1 allows remote attackers to obtain potentially sensitive informatio... |
| CVE-2008-3337 | — | — | 6.1% | Aug 8, 2008 | PowerDNS Authoritative Server before 2.9.21.1 drops malformed queries, which might make it easier for remote attackers t... |
| CVE-2008-3532 | — | — | 1.6% | Aug 8, 2008 | The NSS plugin in libpurple in Pidgin 2.4.3 does not verify SSL certificates, which makes it easier for remote attackers... |
| CVE-2008-3534 | — | — | 0.5% | Aug 8, 2008 | The shmem_delete_inode function in mm/shmem.c in the tmpfs implementation in the Linux kernel before 2.6.26.1 allows loc... |
| CVE-2008-3560 | — | — | 1.4% | Aug 8, 2008 | Cross-site scripting (XSS) vulnerability in kshop_search.php in the Kshop module 2.22 for Xoops allows remote attackers ... |
| CVE-2008-3559 | — | — | 1.5% | Aug 8, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in KAPhotoservice allow remote attackers to inject arbitrary web scr... |
| CVE-2008-3558 | — | — | 65.4% | Aug 8, 2008 | Stack-based buffer overflow in the WebexUCFObject ActiveX control in atucfobj.dll in Cisco WebEx Meeting Manager before ... |
| CVE-2008-3557 | — | — | 2.5% | Aug 8, 2008 | Free Hosting Manager 1.2 and 2.0 allows remote attackers to bypass authentication and gain administrative access by sett... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now