2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-3344Multiple cross-site scripting (XSS) vulnerabilities in staticpages/easyecards/index.php in MyioSoft EasyE-Cards 3.5 tria...
CVE-2008-3348Cross-site scripting (XSS) vulnerability in staticpages/easycalendar/index.php in MyioSoft EasyDynamicPages 3.0 trial ed...
CVE-2008-3345SQL injection vulnerability in staticpages/easyecards/index.php in MyioSoft EasyE-Cards 3.5 trial edition (tr) and 3.10a...
CVE-2008-3346SQL injection vulnerability in product_detail.php in ShopCart DX allows remote attackers to execute arbitrary SQL comman...
CVE-2008-3336Multiple cross-site scripting (XSS) vulnerabilities in PunBB before 1.2.19 allow remote attackers to inject arbitrary we...
CVE-2008-3332Eval injection vulnerability in adm_config_set.php in Mantis before 1.1.2 allows remote authenticated administrators to ...
CVE-2008-3333Directory traversal vulnerability in core/lang_api.php in Mantis before 1.1.2 allows remote attackers to include and exe...
CVE-2008-3331Cross-site scripting (XSS) vulnerability in return_dynamic_filters.php in Mantis before 1.1.2 allows remote attackers to...
CVE-2008-3334Cross-site scripting (XSS) vulnerability in MyBB 1.2.x before 1.2.14 allows remote attackers to inject arbitrary web scr...
CVE-2008-3335Unspecified vulnerability in PunBB before 1.2.19 allows remote attackers to inject arbitrary SMTP commands via unknown v...
CVE-2008-3330Cross-site scripting (XSS) vulnerability in services/obrowser/index.php in Horde 3.2 and Turba 2.2 allows remote attacke...
CVE-2008-3328Cross-site scripting (XSS) vulnerability in the wiki engine in Trac before 0.10.5 allows remote attackers to inject arbi...
CVE-2008-3329Unspecified vulnerability in Links before 2.1, when "only proxies" is enabled, has unknown impact and attack vectors rel...
CVE-2008-2951MEDIUM6.1Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbi...
CVE-2008-3307SQL injection vulnerability in todos.php in C. Desseno YouTube Blog (ytb) 0.1 allows remote attackers to execute arbitra...
CVE-2008-3319admin/index.php in Maian Links 3.1 and earlier allows remote attackers to bypass authentication and gain administrative ...
CVE-2008-3325Cross-site request forgery (CSRF) vulnerability in Moodle 1.6.x before 1.6.7 and 1.7.x before 1.7.5 allows remote attack...
CVE-2008-3318admin/index.php in Maian Weblog 4.0 and earlier allows remote attackers to bypass authentication and gain administrative...
CVE-2008-3326Cross-site scripting (XSS) vulnerability in blog/edit.php in Moodle 1.6.x before 1.6.7 and 1.7.x before 1.7.5 allows rem...
CVE-2008-3327Moodle 1.6.5, when display_errors is enabled, allows remote attackers to obtain sensitive information via a direct reque...
CVE-2008-3317admin/index.php in Maian Search 1.1 and earlier allows remote attackers to bypass authentication and gain administrative...
CVE-2008-3316Cross-site scripting (XSS) vulnerability in the search feature in the Forum plugin before 2.7.1 for Geeklog allows remot...
CVE-2008-3315Multiple cross-site scripting (XSS) vulnerabilities in Claroline 1.8.10 allow remote attackers to inject arbitrary web s...
CVE-2008-3314ZDaemon 1.08.07 and earlier allows remote attackers to cause a denial of service (daemon crash) via a crafted type 6 com...
CVE-2008-3313Multiple PHP remote file inclusion vulnerabilities in CreaCMS 1.0 allow remote attackers to execute arbitrary PHP code v...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now