2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-2675 | — | — | 1.0% | Jun 12, 2008 | Cross-site scripting (XSS) vulnerability in index.php in PHP Image Gallery allows remote attackers to inject arbitrary w... |
| CVE-2008-2674 | — | — | 1.4% | Jun 12, 2008 | Unspecified vulnerability in the Interstage Management Console, as used in Fujitsu Interstage Application Server 6.0 thr... |
| CVE-2008-2673 | — | — | 1.0% | Jun 12, 2008 | SQL injection vulnerability in index.php in Powie pNews 2.08 and 2.10, when magic_quotes_gpc is disabled, allows remote ... |
| CVE-2008-2677 | — | — | 1.5% | Jun 12, 2008 | Cross-site scripting (XSS) vulnerability in edit1.php in Telephone Directory 2008 allows remote attackers to inject arbi... |
| CVE-2008-2681 | — | — | 2.6% | Jun 12, 2008 | Realm CMS 2.3 and earlier allows remote attackers to obtain sensitive information via a direct request to _db/compact.as... |
| CVE-2008-2682 | — | — | 2.5% | Jun 12, 2008 | _RealmAdmin/login.asp in Realm CMS 2.3 and earlier allows remote attackers to bypass authentication and access admin pag... |
| CVE-2008-2683 | — | — | 34.8% | Jun 12, 2008 | The BIDIB.BIDIBCtrl.1 ActiveX control in BIDIB.ocx 10.9.3.0 in Black Ice Barcode SDK 5.01 allows remote attackers to for... |
| CVE-2008-2678 | — | — | 2.1% | Jun 12, 2008 | Multiple SQL injection vulnerabilities in Telephone Directory 2008, when magic_quotes_gpc is disabled, allow remote atta... |
| CVE-2008-2684 | — | — | 8.7% | Jun 12, 2008 | The BIDIB.BIDIBCtrl.1 ActiveX control in BIDIB.ocx 10.9.3.0 in Black Ice Barcode SDK 5.01 allows remote attackers to exe... |
| CVE-2008-2679 | — | — | 1.0% | Jun 12, 2008 | SQL injection vulnerability in the KeyWordsList function in _includes/inc_routines.asp in Realm CMS 2.3 and earlier allo... |
| CVE-2008-2685 | — | — | 1.1% | Jun 12, 2008 | SQL injection vulnerability in article.asp in Battle Blog 1.25 Build 4 and earlier allows remote attackers to execute ar... |
| CVE-2008-2676 | — | — | 0.9% | Jun 12, 2008 | SQL injection vulnerability in the iJoomla News Portal (com_news_portal) component 1.0 and earlier for Joomla! allows re... |
| CVE-2008-2680 | — | — | 1.5% | Jun 12, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in _db/compact.asp in Realm CMS 2.3 and earlier allow remote attacke... |
| CVE-2008-1445 | — | — | 27.1% | Jun 12, 2008 | Active Directory on Microsoft Windows 2000 Server SP4, XP Professional SP2 and SP3, Server 2003 SP1 and SP2, and Server ... |
| CVE-2008-0956 | — | — | 8.4% | Jun 12, 2008 | Multiple stack-based buffer overflows in the BackWeb Lite Install Runner ActiveX control in the BackWeb Web Package Acti... |
| CVE-2008-1441 | — | — | 19.7% | Jun 12, 2008 | Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote attackers t... |
| CVE-2008-2672 | — | — | 3.5% | Jun 12, 2008 | Multiple directory traversal vulnerabilities in ErfurtWiki R1.02b and earlier, when register_globals is enabled, allow r... |
| CVE-2008-2671 | — | — | 1.2% | Jun 12, 2008 | SQL injection vulnerability in comments.php in DCFM Blog 0.9.4 allows remote attackers to execute arbitrary SQL commands... |
| CVE-2008-1440 | — | — | 22.6% | Jun 12, 2008 | Microsoft Windows XP SP2 and SP3, and Server 2003 SP1 and SP2, does not properly validate the option length field in Pra... |
| CVE-2008-1444 | — | — | 39.5% | Jun 12, 2008 | Stack-based buffer overflow in Microsoft DirectX 7.0 and 8.1 on Windows 2000 SP4 allows remote attackers to execute arbi... |
| CVE-2008-2670 | — | — | 1.0% | Jun 12, 2008 | Multiple SQL injection vulnerabilities in index.php in Insanely Simple Blog 0.5 allow remote attackers to execute arbitr... |
| CVE-2008-2669 | — | — | 1.2% | Jun 12, 2008 | Multiple SQL injection vulnerabilities in yBlog 0.2.2.2 allow remote attackers to execute arbitrary SQL commands via (1)... |
| CVE-2008-2668 | — | — | 1.8% | Jun 12, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in yBlog 0.2.2.2 allow remote attackers to inject arbitrary web scri... |
| CVE-2008-1453 | — | — | 2.4% | Jun 12, 2008 | The Bluetooth stack in Microsoft Windows XP SP2 and SP3, and Vista Gold and SP1, allows physically proximate attackers t... |
| CVE-2008-1451 | — | — | 4.1% | Jun 12, 2008 | The WINS service on Microsoft Windows 2000 SP4, and Server 2003 SP1 and SP2, does not properly validate data structures ... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now