2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-2242 | — | — | 14.7% | May 21, 2008 | Multiple buffer overflows in xdr functions in the server in CA BrightStor ARCServe Backup 11.0, 11.1, and 11.5 allow rem... |
| CVE-2008-2396 | — | — | 2.5% | May 21, 2008 | PHP remote file inclusion vulnerability in index.php in Wajox Software microSSys CMS 1.5 and earlier, when register_glob... |
| CVE-2008-2397 | — | — | 1.0% | May 21, 2008 | Cross-site scripting (XSS) vulnerability in search-results.dot in dotCMS 1.x allows remote attackers to inject arbitrary... |
| CVE-2008-2398 | — | — | 6.2% | May 21, 2008 | Cross-site scripting (XSS) vulnerability in index.php in AppServ Open Project 2.5.10 and earlier allows remote attackers... |
| CVE-2008-1949 | — | — | 5.8% | May 21, 2008 | The _gnutls_recv_client_kx_message function in lib/gnutls_kx.c in libgnutls in gnutls-serv in GnuTLS before 2.2.4 contin... |
| CVE-2008-2394 | — | — | 1.0% | May 21, 2008 | Multiple SQL injection vulnerabilities in TAGWORX.CMS 3.00.02 allow remote attackers to execute arbitrary SQL commands v... |
| CVE-2008-1948 | — | — | 12.0% | May 21, 2008 | The _gnutls_server_name_recv_params function in lib/ext_server_name.c in libgnutls in gnutls-serv in GnuTLS before 2.2.4... |
| CVE-2008-1950 | — | — | 5.0% | May 21, 2008 | Integer signedness error in the _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in libgnutls in GnuTLS bef... |
| CVE-2008-2357 | — | — | 4.7% | May 21, 2008 | Stack-based buffer overflow in the split_redraw function in split.c in mtr before 0.73, when invoked with the -p (aka --... |
| CVE-2008-2391 | — | — | 1.9% | May 21, 2008 | SubSonic allows remote attackers to bypass pagesize limits and cause a denial of service (CPU consumption) via a pageind... |
| CVE-2008-2392 | — | — | 4.3% | May 21, 2008 | Unrestricted file upload vulnerability in WordPress 2.5.1 and earlier might allow remote authenticated administrators to... |
| CVE-2008-2241 | — | — | 11.9% | May 21, 2008 | Directory traversal vulnerability in caloggerd in CA BrightStor ARCServe Backup 11.0, 11.1, and 11.5 allows remote attac... |
| CVE-2008-2395 | — | — | 1.0% | May 21, 2008 | SQL injection vulnerability in thread.php in AlkalinePHP 0.80.00 beta and earlier allows remote attackers to execute arb... |
| CVE-2008-1104 | — | — | 22.7% | May 21, 2008 | Stack-based buffer overflow in Foxit Reader before 2.3 build 2912 allows user-assisted remote attackers to execute arbit... |
| CVE-2008-2390 | — | — | 6.9% | May 21, 2008 | Hpufunction.dll 4.0.0.1 in HP Software Update exposes the unsafe (1) ExecuteAsync and (2) Execute methods, which allows ... |
| CVE-2008-1660 | — | — | 0.4% | May 21, 2008 | Unspecified vulnerability in useradd on HP-UX B.11.11, B.11.23, and B.11.31 allows local users to access arbitrary files... |
| CVE-2008-2354 | — | — | 1.0% | May 20, 2008 | Unspecified vulnerability in the data export function in testMaker before 3.0p10 allows test authors to obtain access to... |
| CVE-2008-0957 | — | — | 3.1% | May 20, 2008 | Multiple stack-based buffer overflows in the PhotoStockPlus Uploader Tool ActiveX control (PSPUploader.ocx) allow remote... |
| CVE-2008-2346 | — | — | 2.7% | May 20, 2008 | AlkalinePHP 0.77.35 and earlier allows remote attackers to bypass authentication and gain administrative access by creat... |
| CVE-2008-2347 | — | — | 2.6% | May 20, 2008 | MyPicGallery 1.0 allows remote attackers to bypass application authentication and gain administrative access by setting ... |
| CVE-2008-2348 | — | — | 2.5% | May 20, 2008 | MeltingIce File System 1.0 allows remote attackers to bypass application authentication, create new user accounts, and e... |
| CVE-2008-2349 | — | — | 2.4% | May 20, 2008 | Zomplog 3.8.2 and earlier allows remote attackers to gain administrative access by creating an admin account via a direc... |
| CVE-2008-2350 | — | — | 2.7% | May 20, 2008 | Directory traversal vulnerability in highlight.php in bcoos 1.0.9 through 1.0.13 allows remote attackers to read arbitra... |
| CVE-2008-2351 | — | — | 1.0% | May 20, 2008 | Multiple SQL injection vulnerabilities in index.php in CMS WebManager-Pro allow remote attackers to execute arbitrary SQ... |
| CVE-2008-2352 | — | — | 2.4% | May 20, 2008 | Directory traversal vulnerability in index.php in Smeego 1.0, when magic_quotes_gpc is disabled, allows remote attackers... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now