2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-7029——Unrestricted file upload vulnerability in usercp.php in AlilG Application AliBoard Beta allows remote authenticated user...
CVE-2008-7028——RPG.Board 0.8 Beta2 and earlier allows remote attackers to bypass authentication and gain privileges by setting the keep...
CVE-2008-7027——Libra File Manager 1.18 and earlier allows remote attackers to bypass authentication and gain privileges by setting the ...
CVE-2008-7026——Unrestricted file upload vulnerability in filesystem3.class.php in eFront 3.5.1 build 2710 and earlier allows remote att...
CVE-2008-7025——TrueVector in Check Point ZoneAlarm 8.0.020.000, with vsmon.exe running, allows remote HTTP proxies to cause a denial of...
CVE-2008-7024——admin.php in Arz Development The Gemini Portal 4.7 and earlier allows remote attackers to bypass authentication and gain...
CVE-2008-7023——Aruba Mobility Controller running ArubaOS 3.3.1.16, and possibly other versions, installs the same default X.509 certifi...
CVE-2008-7022——Insecure method vulnerability in ChilkatMail_v7_9.dll in the Chilkat Software IMAP ActiveX control (ChilkatMail2.Chilkat...
CVE-2008-7021——Unrestricted file upload vulnerability in editlogo.php in AvailScript Jobs Portal Script allows remote authenticated use...
CVE-2008-7020——McAfee SafeBoot Device Encryption 4 build 4750 and earlier stores pre-boot authentication passwords in the BIOS Keyboard...
CVE-2008-7019——Esqlanelapse 2.6.1 and 2.6.2 allows remote attackers to bypass authentication and gain privileges via modified (1) enomb...
CVE-2008-7018——Cross-site scripting (XSS) vulnerability in NashTech Easy PHP Calendar 6.3.25 allows remote attackers to inject arbitrar...
CVE-2008-7017——Cross-site scripting (XSS) vulnerability in analyse.php in CAcert 20080921, and possibly other versions before 20080928,...
CVE-2008-7016——tnftpd before 20080929 splits large command strings into multiple commands, which allows remote attackers to conduct cro...
CVE-2008-7015——Unreal engine 3, as used in Unreal Tournament 3 1.3, Frontlines: Fuel of War 1.1.1, and other products, allows remote at...
CVE-2008-7014——fhttpd 0.4.2 allows remote attackers to cause a denial of service (crash) via an Authorization HTTP header with an inval...
CVE-2008-7013——NetService.dll in Baidu Hi IM allows remote servers to cause a denial of service (client crash) via a crafted login resp...
CVE-2008-7012——courier/1000@/api_error_email.html (aka "error reporting page") in Accellion File Transfer Appliance FTA_7_0_178, and po...
CVE-2008-7011——The Unreal engine, as used in Unreal Tournament 3 1.3, Unreal Tournament 2003 and 2004, Dead Man's Hand, Pariah, WarPath...
CVE-2008-7010——Skalfa Software SkaLinks Exchange Script 1.5 allows remote attackers to add new administrators and gain privileges via a...
CVE-2008-7009——Buffer overflow in multiscan.exe in Check Point ZoneAlarm Security Suite 7.0.483.000 and 8.0.020.000 allows local users ...
CVE-2008-7008——HyperStop Web Host Directory 1.2 allows remote attackers to bypass authentication and download a database backup via a d...
CVE-2008-7007——Free PHP VX Guestbook 1.06 allows remote attackers to bypass authentication and gain administrative access by setting th...
CVE-2008-7006——Free PHP VX Guestbook 1.06 allows remote attackers to bypass authentication and download a backup of the database via a ...
CVE-2008-7005——include/modules/top/1-random_quote.php in Minb Is Not a Blog (minb) 0.1.0 allows remote attackers to execute arbitrary P...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now