2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-6954The web interface (CobblerWeb) in Cobbler before 1.2.9 allows remote authenticated users to execute arbitrary Python cod...
CVE-2008-6953Buffer overflow in oovoo.exe in ooVoo 1.7.1.35, and possibly other versions before 1.7.1.59, allows remote attackers to ...
CVE-2008-6952SQL injection vulnerability in Rss.php in MauryCMS 0.53.2 and earlier allows remote attackers to execute arbitrary SQL c...
CVE-2008-6951MauryCMS 0.53.2 and earlier does not require administrative authentication for Editors/fckeditor/editor/filemanager/brow...
CVE-2008-6950Multiple SQL injection vulnerabilities in login.asp in Bankoi WebHosting Control Panel 1.20 allow remote attackers to ex...
CVE-2008-6949Multiple cross-site request forgery (CSRF) vulnerabilities in Collabtive 0.4.8 allow remote attackers to hijack the auth...
CVE-2008-6948Unrestricted file upload vulnerability in Collabtive 0.4.8 allows remote authenticated users to execute arbitrary code b...
CVE-2008-6947Collabtive 0.4.8 allows remote attackers to bypass authentication and create new users, including administrators, via un...
CVE-2008-6946Cross-site scripting (XSS) vulnerability in manageproject.php in Collabtive 0.4.8 allows user-assisted remote attackers ...
CVE-2008-6945Multiple cross-site scripting (XSS) vulnerabilities in Interchange 5.7 before 5.7.1, 5.6 before 5.6.1, and 5.4 before 5....
CVE-2008-6944Unrestricted file upload vulnerability in ScriptsFeed Auto Classifieds allows remote authenticated users to execute arbi...
CVE-2008-6943Unrestricted file upload vulnerability in ScriptsFeed Recipes Listing Portal allows remote authenticated users to execut...
CVE-2008-6942Unrestricted file upload vulnerability in ScriptsFeed Realtor Classifieds System (aka Real Estate Classifieds) allows re...
CVE-2008-6941SQL injection vulnerability in the login functionality in TurnkeyForms Web Hosting Directory allows remote attackers to ...
CVE-2008-6940TurnkeyForms Web Hosting Directory stores sensitive information under the web root with insufficient access control, whi...
CVE-2008-6939TurnkeyForms Web Hosting Directory allows remote attackers to bypass authentication and (1) gain administrative privileg...
CVE-2008-6938Pi3Web 2.0.3 before PL2, when installed on Windows as a desktop application and without using the Pi3Web/Conf/Intenet.pi...
CVE-2008-6937Argument injection vulnerability in Exodus 0.10 allows remote attackers to inject arbitrary command line arguments, over...
CVE-2008-6936Argument injection vulnerability in Exodus 0.10 allows remote attackers to inject arbitrary command line arguments, over...
CVE-2008-6935Argument injection vulnerability in Exodus 0.10 allows remote attackers to inject arbitrary command line arguments, over...
CVE-2008-6934Static code injection vulnerability in Sanus|artificium (aka Sanusart) Free simple guestbook PHP script, when downloaded...
CVE-2008-6933Directory traversal vulnerability in index.php in MiniGal b13 (aka MG2) allows remote attackers to read the source code ...
CVE-2008-6932Unrestricted file upload vulnerability in submit_file.php in AlstraSoft SendIt Pro allows remote attackers to execute ar...
CVE-2008-6931Unrestricted file upload vulnerability in PHPStore Job Search (aka PHPCareers) allows remote authenticated users to exec...
CVE-2008-6930Unrestricted file upload vulnerability in PHPStore Real Estate allows remote authenticated users to execute arbitrary co...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now