2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-3491SQL injection vulnerability in go.php in Scripts24 iPost 1.0.1 and iTGP 1.0.4 allows remote attackers to execute arbitra...
CVE-2008-3488Unspecified vulnerability in Novell iManager before 2.7 SP1 (2.7.1) allows remote attackers to delete Plug-in Studio cre...
CVE-2008-3486Directory traversal vulnerability in the user_get_profile function in include/functions.inc.php in Coppermine Photo Gall...
CVE-2008-3490SQL injection vulnerability in members/mail.php in E-topbiz Online Dating 3 1.0 allows remote authenticated users to exe...
CVE-2008-3487SQL injection vulnerability in profile.php in PHPAuction GPL Enhanced 2.51 allows remote attackers to execute arbitrary ...
CVE-2008-3485Untrusted search path vulnerability in Citrix MetaFrame Presentation Server allows local users to gain privileges via a ...
CVE-2008-3489SQL injection vulnerability in checkCookie function in includes/functions.inc.php in PHPX 3.5.16 allows remote attackers...
CVE-2008-3484SQL injection vulnerability in eStoreAff 0.1 allows remote attackers to execute arbitrary SQL commands via the cid param...
CVE-2008-3482Cross-site scripting (XSS) vulnerability in the error page feature in Panasonic Network Camera BL-C111, BL-C131, BB-HCM5...
CVE-2008-3483Cross-site scripting (XSS) vulnerability in ScrewTurn Wiki 2.0.29 and 2.0.30 allows remote attackers to inject arbitrary...
CVE-2008-3431HIGH8.8The VBoxDrvNtDeviceControl function in VBoxDrv.sys in Sun xVM VirtualBox before 1.6.4 uses the METHOD_NEITHER communicat...
CVE-2008-3357Untrusted search path vulnerability in ingvalidpw in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006 rele...
CVE-2008-3389Stack-based buffer overflow in the libbecompat library in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006...
CVE-2008-3481themes/sample/theme.php in Coppermine Photo Gallery (CPG) 1.4.18 and earlier allows remote attackers to obtain sensitive...
CVE-2008-3356verifydb in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006 release 2 (aka 9.1.0) on Linux and other Unix...
CVE-2008-3456phpMyAdmin before 2.11.8 does not sufficiently prevent its pages from using frames that point to pages in other domains,...
CVE-2008-3457Cross-site scripting (XSS) vulnerability in setup.php in phpMyAdmin before 2.11.8 allows user-assisted remote attackers ...
CVE-2008-3458Vtiger CRM before 5.0.4 stores sensitive information under the web root with insufficient access control, which allows r...
CVE-2008-3459Unspecified vulnerability in OpenVPN 2.1-beta14 through 2.1-rc8, when running on non-Windows systems, allows remote serv...
CVE-2008-3453Multiple unspecified vulnerabilities in ImpressCMS 1.0 have unknown impact and attack vectors, related to modules/admin....
CVE-2008-3451PhpWebGallery 1.7.0 and 1.7.1 allows remote authenticated users with advisor privileges to obtain the real e-mail addres...
CVE-2008-3454JnSHosts PHP Hosting Directory 2.0 allows remote attackers to bypass authentication and gain administrative access by se...
CVE-2008-3452SQL injection vulnerability in the Calendar module in eNdonesia 8.4 allows remote attackers to execute arbitrary SQL com...
CVE-2008-3455PHP remote file inclusion vulnerability in include/admin.php in JnSHosts PHP Hosting Directory 2.0 allows remote attacke...
CVE-2008-3450Unspecified vulnerability in the namefs kernel module in Sun Solaris 8 through 10 allows local users to gain privileges ...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now