2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-2934 | HIGH | 8.8 | 3.6% | Jul 18, 2008 | Mozilla Firefox 3 before 3.0.1 on Mac OS X allows remote attackers to cause a denial of service (application crash) or p... |
| CVE-2008-3226 | — | — | 1.0% | Jul 18, 2008 | The file caching implementation in Joomla! before 1.5.4 allows attackers to access cached pages via unknown attack vecto... |
| CVE-2008-3224 | — | — | 1.5% | Jul 18, 2008 | Unspecified vulnerability in phpBB before 3.0.1 has unknown impact and attack vectors related to "urls gone through redi... |
| CVE-2008-3222 | — | — | 2.9% | Jul 18, 2008 | Session fixation vulnerability in Drupal 5.x before 5.9 and 6.x before 6.3, when contributed modules "terminate the curr... |
| CVE-2008-3215 | — | — | 4.7% | Jul 18, 2008 | libclamav/petite.c in ClamAV before 0.93.3 allows remote attackers to cause a denial of service via a malformed Petite f... |
| CVE-2008-3220 | — | — | 1.3% | Jul 18, 2008 | Cross-site request forgery (CSRF) vulnerability in Drupal 5.x before 5.8 and 6.x before 6.3 allows remote attackers to p... |
| CVE-2008-3221 | — | — | 1.1% | Jul 18, 2008 | Cross-site request forgery (CSRF) vulnerability in Drupal 6.x before 6.3 allows remote attackers to perform administrati... |
| CVE-2008-3217 | — | — | 1.8% | Jul 18, 2008 | PowerDNS Recursor before 3.1.6 does not always use the strongest random number generator for source port selection, whic... |
| CVE-2008-3216 | — | — | 0.4% | Jul 18, 2008 | The save function in br/prefmanager.d in projectl 1.001 creates a projectL.prf file in the current working directory, wh... |
| CVE-2008-3234 | — | — | 5.8% | Jul 18, 2008 | sshd in OpenSSH 4 on Debian GNU/Linux, and the 20070303 OpenSSH snapshot, allows remote authenticated users to obtain ac... |
| CVE-2008-3233 | — | — | 3.9% | Jul 18, 2008 | Cross-site scripting (XSS) vulnerability in WordPress before 2.6, SVN development versions only, allows remote attackers... |
| CVE-2008-3232 | — | — | 4.6% | Jul 18, 2008 | Unrestricted file upload vulnerability in ecrire/images.php in Dotclear 1.2.7.1 and earlier allows remote authenticated ... |
| CVE-2008-3219 | — | — | 2.1% | Jul 18, 2008 | The Drupal filter_xss_admin function in 5.x before 5.8 and 6.x before 6.3 does not "prevent use of the object HTML tag i... |
| CVE-2008-3211 | — | — | 3.3% | Jul 18, 2008 | Scripteen Free Image Hosting Script 1.2 and 1.2.1 allows remote attackers to bypass authentication and gain administrati... |
| CVE-2008-3213 | — | — | 1.0% | Jul 18, 2008 | SQL injection vulnerability in secciones/tablon/tablon.php in WebCMS Portal Edition allows remote attackers to execute a... |
| CVE-2008-3212 | — | — | 1.0% | Jul 18, 2008 | Multiple SQL injection vulnerabilities in Scripteen Free Image Hosting Script 1.2.1 allow remote attackers to execute ar... |
| CVE-2008-3210 | — | — | 3.5% | Jul 18, 2008 | rutil/dns/DnsStub.cxx in ReSIProcate 1.3.2, as used by repro, allows remote attackers to cause a denial of service (daem... |
| CVE-2008-3209 | — | — | 6.0% | Jul 18, 2008 | Heap-based buffer overflow in the OpenGifFile function in BiGif.dll in Black Ice Document Imaging SDK 10.95 allows remot... |
| CVE-2008-3208 | — | — | 3.3% | Jul 18, 2008 | Simple DNS Plus 4.1, 5.0, and possibly other versions before 5.1.101 allows remote attackers to cause a denial of servic... |
| CVE-2008-3207 | — | — | 5.6% | Jul 18, 2008 | PHP remote file inclusion vulnerability in cms/modules/form.lib.php in Pragyan CMS 2.6.2, when register_globals is enabl... |
| CVE-2008-3206 | — | — | 2.1% | Jul 18, 2008 | SQL injection vulnerability in browse.groups.php in Yuhhu Pubs Black Cat allows remote attackers to execute arbitrary SQ... |
| CVE-2008-3205 | — | — | 2.8% | Jul 17, 2008 | Directory traversal vulnerability in index.php in Easy-Script Wysi Wiki Wyg 1.0 allows remote attackers to read arbitrar... |
| CVE-2008-3204 | — | — | 1.0% | Jul 17, 2008 | SQL injection vulnerability in tops_top.php in E-topbiz Million Pixels 3 allows remote attackers to execute arbitrary SQ... |
| CVE-2008-3203 | — | — | 2.6% | Jul 17, 2008 | js/pages/pages_data.php in AuraCMS 2.2 through 2.2.2 does not perform authentication, which allows remote attackers to a... |
| CVE-2008-3202 | — | — | 1.5% | Jul 17, 2008 | Cross-site scripting (XSS) vulnerability in index.php in Xomol CMS 1.2 allows remote attackers to inject arbitrary web s... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now