2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-7029Unrestricted file upload vulnerability in usercp.php in AlilG Application AliBoard Beta allows remote authenticated user...
CVE-2008-7028RPG.Board 0.8 Beta2 and earlier allows remote attackers to bypass authentication and gain privileges by setting the keep...
CVE-2008-7027Libra File Manager 1.18 and earlier allows remote attackers to bypass authentication and gain privileges by setting the ...
CVE-2008-7026Unrestricted file upload vulnerability in filesystem3.class.php in eFront 3.5.1 build 2710 and earlier allows remote att...
CVE-2008-7025TrueVector in Check Point ZoneAlarm 8.0.020.000, with vsmon.exe running, allows remote HTTP proxies to cause a denial of...
CVE-2008-7024admin.php in Arz Development The Gemini Portal 4.7 and earlier allows remote attackers to bypass authentication and gain...
CVE-2008-7023Aruba Mobility Controller running ArubaOS 3.3.1.16, and possibly other versions, installs the same default X.509 certifi...
CVE-2008-7022Insecure method vulnerability in ChilkatMail_v7_9.dll in the Chilkat Software IMAP ActiveX control (ChilkatMail2.Chilkat...
CVE-2008-7021Unrestricted file upload vulnerability in editlogo.php in AvailScript Jobs Portal Script allows remote authenticated use...
CVE-2008-7020McAfee SafeBoot Device Encryption 4 build 4750 and earlier stores pre-boot authentication passwords in the BIOS Keyboard...
CVE-2008-7019Esqlanelapse 2.6.1 and 2.6.2 allows remote attackers to bypass authentication and gain privileges via modified (1) enomb...
CVE-2008-7018Cross-site scripting (XSS) vulnerability in NashTech Easy PHP Calendar 6.3.25 allows remote attackers to inject arbitrar...
CVE-2008-7017Cross-site scripting (XSS) vulnerability in analyse.php in CAcert 20080921, and possibly other versions before 20080928,...
CVE-2008-7016tnftpd before 20080929 splits large command strings into multiple commands, which allows remote attackers to conduct cro...
CVE-2008-7015Unreal engine 3, as used in Unreal Tournament 3 1.3, Frontlines: Fuel of War 1.1.1, and other products, allows remote at...
CVE-2008-7014fhttpd 0.4.2 allows remote attackers to cause a denial of service (crash) via an Authorization HTTP header with an inval...
CVE-2008-7013NetService.dll in Baidu Hi IM allows remote servers to cause a denial of service (client crash) via a crafted login resp...
CVE-2008-7012courier/1000@/api_error_email.html (aka "error reporting page") in Accellion File Transfer Appliance FTA_7_0_178, and po...
CVE-2008-7011The Unreal engine, as used in Unreal Tournament 3 1.3, Unreal Tournament 2003 and 2004, Dead Man's Hand, Pariah, WarPath...
CVE-2008-7010Skalfa Software SkaLinks Exchange Script 1.5 allows remote attackers to add new administrators and gain privileges via a...
CVE-2008-7009Buffer overflow in multiscan.exe in Check Point ZoneAlarm Security Suite 7.0.483.000 and 8.0.020.000 allows local users ...
CVE-2008-7008HyperStop Web Host Directory 1.2 allows remote attackers to bypass authentication and download a database backup via a d...
CVE-2008-7007Free PHP VX Guestbook 1.06 allows remote attackers to bypass authentication and gain administrative access by setting th...
CVE-2008-7006Free PHP VX Guestbook 1.06 allows remote attackers to bypass authentication and download a backup of the database via a ...
CVE-2008-7005include/modules/top/1-random_quote.php in Minb Is Not a Blog (minb) 0.1.0 allows remote attackers to execute arbitrary P...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now