2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-2934HIGH8.8Mozilla Firefox 3 before 3.0.1 on Mac OS X allows remote attackers to cause a denial of service (application crash) or p...
CVE-2008-3226The file caching implementation in Joomla! before 1.5.4 allows attackers to access cached pages via unknown attack vecto...
CVE-2008-3224Unspecified vulnerability in phpBB before 3.0.1 has unknown impact and attack vectors related to "urls gone through redi...
CVE-2008-3222Session fixation vulnerability in Drupal 5.x before 5.9 and 6.x before 6.3, when contributed modules "terminate the curr...
CVE-2008-3215libclamav/petite.c in ClamAV before 0.93.3 allows remote attackers to cause a denial of service via a malformed Petite f...
CVE-2008-3220Cross-site request forgery (CSRF) vulnerability in Drupal 5.x before 5.8 and 6.x before 6.3 allows remote attackers to p...
CVE-2008-3221Cross-site request forgery (CSRF) vulnerability in Drupal 6.x before 6.3 allows remote attackers to perform administrati...
CVE-2008-3217PowerDNS Recursor before 3.1.6 does not always use the strongest random number generator for source port selection, whic...
CVE-2008-3216The save function in br/prefmanager.d in projectl 1.001 creates a projectL.prf file in the current working directory, wh...
CVE-2008-3234sshd in OpenSSH 4 on Debian GNU/Linux, and the 20070303 OpenSSH snapshot, allows remote authenticated users to obtain ac...
CVE-2008-3233Cross-site scripting (XSS) vulnerability in WordPress before 2.6, SVN development versions only, allows remote attackers...
CVE-2008-3232Unrestricted file upload vulnerability in ecrire/images.php in Dotclear 1.2.7.1 and earlier allows remote authenticated ...
CVE-2008-3219The Drupal filter_xss_admin function in 5.x before 5.8 and 6.x before 6.3 does not "prevent use of the object HTML tag i...
CVE-2008-3211Scripteen Free Image Hosting Script 1.2 and 1.2.1 allows remote attackers to bypass authentication and gain administrati...
CVE-2008-3213SQL injection vulnerability in secciones/tablon/tablon.php in WebCMS Portal Edition allows remote attackers to execute a...
CVE-2008-3212Multiple SQL injection vulnerabilities in Scripteen Free Image Hosting Script 1.2.1 allow remote attackers to execute ar...
CVE-2008-3210rutil/dns/DnsStub.cxx in ReSIProcate 1.3.2, as used by repro, allows remote attackers to cause a denial of service (daem...
CVE-2008-3209Heap-based buffer overflow in the OpenGifFile function in BiGif.dll in Black Ice Document Imaging SDK 10.95 allows remot...
CVE-2008-3208Simple DNS Plus 4.1, 5.0, and possibly other versions before 5.1.101 allows remote attackers to cause a denial of servic...
CVE-2008-3207PHP remote file inclusion vulnerability in cms/modules/form.lib.php in Pragyan CMS 2.6.2, when register_globals is enabl...
CVE-2008-3206SQL injection vulnerability in browse.groups.php in Yuhhu Pubs Black Cat allows remote attackers to execute arbitrary SQ...
CVE-2008-3205Directory traversal vulnerability in index.php in Easy-Script Wysi Wiki Wyg 1.0 allows remote attackers to read arbitrar...
CVE-2008-3204SQL injection vulnerability in tops_top.php in E-topbiz Million Pixels 3 allows remote attackers to execute arbitrary SQ...
CVE-2008-3203js/pages/pages_data.php in AuraCMS 2.2 through 2.2.2 does not perform authentication, which allows remote attackers to a...
CVE-2008-3202Cross-site scripting (XSS) vulnerability in index.php in Xomol CMS 1.2 allows remote attackers to inject arbitrary web s...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now