2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-7079Buffer overflow in Nero ShowTime 5.0.15.0 allows remote attackers to cause a denial of service (crash) and possibly exec...
CVE-2008-7078Multiple buffer overflows in Rumpus before 6.0.1 allow remote attackers to (1) cause a denial of service (segmentation f...
CVE-2008-7077Multiple SQL injection vulnerabilities in SailPlanner 0.3a allow remote attackers to execute arbitrary SQL commands via ...
CVE-2008-7076Unrestricted file upload vulnerability in user.modify.profile.php in Kalptaru Infotech Ltd. Star Articles 6.0 allows rem...
CVE-2008-7075Multiple SQL injection vulnerabilities in Kalptaru Infotech Ltd. Star Articles 6.0 allow remote attackers to inject arbi...
CVE-2008-7074Format string vulnerability in MemeCode Software i.Scribe 1.88 through 2.00 before Beta9 allows remote SMTP servers to c...
CVE-2008-7073PHP remote file inclusion vulnerability in lib/action/rss.php in RSS module 0.1 for Pie Web M{a,e}sher, when register_gl...
CVE-2008-7072Cross-site scripting (XSS) vulnerability in index.php in Chipmunk Topsites allows remote attackers to inject arbitrary w...
CVE-2008-7071SQL injection vulnerability in authenticate.php in Chipmunk Topsites allows remote attackers to execute arbitrary SQL co...
CVE-2008-7070Argument injection vulnerability in the URI handler in KVIrc 3.4.2 Shiny allows remote attackers to execute arbitrary co...
CVE-2008-7069All Club CMS (ACCMS) 0.0.2 and earlier stores sensitive information under the web root with insufficient access control,...
CVE-2008-7068The dba_replace function in PHP 5.2.6 and 4.x allows context-dependent attackers to cause a denial of service (file trun...
CVE-2008-7067PHP remote file inclusion vulnerability in admin/plugins/Online_Users/main.php in PageTree CMS 0.0.2 BETA 0001 allows re...
CVE-2008-7066OpenForum 0.66 Beta allows remote attackers to bypass authentication and reset passwords of other users via a direct req...
CVE-2008-7065Siemens C450 IP and C475 IP VoIP devices allow remote attackers to cause a denial of service (disconnected calls and dev...
CVE-2008-7064Directory traversal vulnerability in the get_lang function in global.php in Quicksilver Forums 1.4.2 and earlier, as use...
CVE-2008-7063Ocean12 FAQ Manager Pro stores sensitive data under the web root with insufficient access control, which allows remote a...
CVE-2008-7062Unrestricted file upload vulnerability in admin/index.php in Download Manager module 1.0 for LoveCMS 1.6.2 Final allows ...
CVE-2008-7061The tooltip manager (chrome/views/tooltip_manager.cc) in Google Chrome 0.2.149.29 Build 1798 and possibly other versions...
CVE-2008-7060Multiple cross-site scripting (XSS) vulnerabilities in One-News Beta 2 allow remote attackers to inject arbitrary HTML a...
CVE-2008-7059SQL injection vulnerability in index.php in One-News Beta 2 allows remote attackers to execute arbitrary SQL commands vi...
CVE-2008-7058Cross-site request forgery (CSRF) vulnerability in BandSite CMS 1.1.4 allows remote attackers to hijack the authenticati...
CVE-2008-7057Cross-site scripting (XSS) vulnerability in merchandise.php in BandSite CMS 1.1.4 allows remote attackers to inject arbi...
CVE-2008-7056BandSite CMS 1.1.4 does not perform access control for adminpanel/phpmydump.php, which allows remote attackers to obtain...
CVE-2008-7055module.php in ezContents 2.0.3 allows remote attackers to bypass the directory traversal protection mechanism to include...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now