2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-3317admin/index.php in Maian Search 1.1 and earlier allows remote attackers to bypass authentication and gain administrative...
CVE-2008-3309SQL injection vulnerability in info_book.asp in DigiLeave 1.2 and earlier allows remote attackers to execute arbitrary S...
CVE-2008-3311PHP remote file inclusion vulnerability in config.php in Adam Scheinberg Flip 3.0 allows remote attackers to execute arb...
CVE-2008-3322admin/index.php in Maian Recipe 1.2 and earlier allows remote attackers to bypass authentication and gain administrative...
CVE-2008-3325Cross-site request forgery (CSRF) vulnerability in Moodle 1.6.x before 1.6.7 and 1.7.x before 1.7.5 allows remote attack...
CVE-2008-3326Cross-site scripting (XSS) vulnerability in blog/edit.php in Moodle 1.6.x before 1.6.7 and 1.7.x before 1.7.5 allows rem...
CVE-2008-3327Moodle 1.6.5, when display_errors is enabled, allows remote attackers to obtain sensitive information via a direct reque...
CVE-2008-3312Directory traversal vulnerability in lemon_includes/FCKeditor/editor/filemanager/browser/browser.php in Lemon CMS 1.10 a...
CVE-2008-3313Multiple PHP remote file inclusion vulnerabilities in CreaCMS 1.0 allow remote attackers to execute arbitrary PHP code v...
CVE-2008-3314ZDaemon 1.08.07 and earlier allows remote attackers to cause a denial of service (daemon crash) via a crafted type 6 com...
CVE-2008-3315Multiple cross-site scripting (XSS) vulnerabilities in Claroline 1.8.10 allow remote attackers to inject arbitrary web s...
CVE-2008-3316Cross-site scripting (XSS) vulnerability in the search feature in the Forum plugin before 2.7.1 for Geeklog allows remot...
CVE-2008-3308PHP remote file inclusion vulnerability in cuenta/cuerpo.php in C. Desseno YouTube Blog (ytb) 0.1, when register_globals...
CVE-2008-3305Cross-site scripting (XSS) vulnerability in mensaje.php in C. Desseno YouTube Blog (ytb) 0.1 allows remote attackers to ...
CVE-2008-3306SQL injection vulnerability in info.php in C. Desseno YouTube Blog (ytb) 0.1 allows remote attackers to execute arbitrar...
CVE-2008-3307SQL injection vulnerability in todos.php in C. Desseno YouTube Blog (ytb) 0.1 allows remote attackers to execute arbitra...
CVE-2008-3318admin/index.php in Maian Weblog 4.0 and earlier allows remote attackers to bypass authentication and gain administrative...
CVE-2008-3319admin/index.php in Maian Links 3.1 and earlier allows remote attackers to bypass authentication and gain administrative ...
CVE-2008-3320admin/index.php in Maian Guestbook 3.2 and earlier allows remote attackers to bypass authentication and gain administrat...
CVE-2008-3321admin/index.php in Maian Uploader 4.0 and earlier allows remote attackers to bypass authentication and gain administrati...
CVE-2008-3296Directory traversal vulnerability in modules/system/admin.php in XOOPS 2.0.18 1 allows remote attackers to include and e...
CVE-2008-3295Cross-site scripting (XSS) vulnerability in modules/system/admin.php in XOOPS 2.0.18.1 allows remote attackers to inject...
CVE-2008-3304BilboBlog 0.2.1 allows remote attackers to obtain sensitive information via (1) an enable_cache=false query string to fo...
CVE-2008-3298SocialEngine (SE) before 2.83 grants certain write privileges for templates, which allows remote authenticated administr...
CVE-2008-3299eSyndiCat 1.6 allows remote attackers to bypass authentication and gain administrative access by setting the admin_lng c...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now