2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-1992 | — | — | 3.0% | Apr 27, 2008 | Acidcat CMS 3.4.1 does not properly restrict access to (1) default_mail_aspemail.asp, (2) default_mail_cdosys.asp or (3)... |
| CVE-2008-1985 | — | — | 1.5% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in base.php in DigitalHive 2.0 RC2 allows remote attackers to inject arbitrary ... |
| CVE-2008-1986 | — | — | 1.4% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in liste_article.php in Blog Pixel Motion (aka PixelMotion) allows remote attac... |
| CVE-2008-1994 | — | — | 0.5% | Apr 27, 2008 | Multiple stack-based buffer overflows in (a) acon.c, (b) menu.c, and (c) child.c in Acon 1.0.5-5 through 1.0.5-7 allow l... |
| CVE-2008-1987 | — | — | 1.0% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in search.php in EncapsGallery 2.0.2 allows remote attackers to inject arbitrar... |
| CVE-2008-1980 | — | — | 1.0% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in E-Publish 5.x before 5.x-1.1 and 6.x before 6.x-1.0 beta1, a Drupal module, ... |
| CVE-2008-1983 | — | — | 1.5% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in Advanced Electron Forum (AEF) 1.0.6 allows remote attackers to inject arbitr... |
| CVE-2008-1984 | — | — | 3.2% | Apr 27, 2008 | The eTrust Common Services (Transport) Daemon (eCSqdmn) in CA Secure Content Manager 8.0.28000.511 and earlier allows re... |
| CVE-2008-1976 | — | — | 1.4% | Apr 27, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in the Drupal modules (1) Internationalization (i18n) 5.x before 5.x... |
| CVE-2008-1982 | — | — | 3.2% | Apr 27, 2008 | SQL injection vulnerability in ss_load.php in the Spreadsheet (wpSS) 0.6 and earlier plugin for WordPress allows remote ... |
| CVE-2008-1981 | — | — | 0.7% | Apr 27, 2008 | Cross-site request forgery (CSRF) vulnerability in E-Publish 5.x before 5.x-1.1 and 6.x before 6.x-1.0 beta1, a Drupal m... |
| CVE-2008-1977 | — | — | 0.7% | Apr 27, 2008 | Cross-site request forgery (CSRF) vulnerability in the Internationalization (i18n) Drupal module 5.x before 5.x-2.3 and ... |
| CVE-2008-1978 | — | — | 0.9% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in the Ubercart 5.x before 5.x-1.0 rc3 module for Drupal allows remote authenti... |
| CVE-2008-1979 | — | — | 3.6% | Apr 27, 2008 | The Discovery Service (casdscvc) in CA ARCserve Backup 12.0.5454.0 and earlier allows remote attackers to cause a denial... |
| CVE-2008-1975 | — | — | 1.0% | Apr 27, 2008 | SQL injection vulnerability in index.php in E-RESERV 2.1 allows remote attackers to execute arbitrary SQL commands via t... |
| CVE-2008-1974 | — | — | 4.9% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in addevent.php in Horde Kronolith 2.1.7, Groupware Webmail Edition 1.0.6, and ... |
| CVE-2008-1969 | — | — | 1.3% | Apr 27, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in Cezanne 6.5.1 and 7 allow remote attackers to inject arbitrary we... |
| CVE-2008-1973 | — | — | 5.8% | Apr 27, 2008 | Heap-based buffer overflow in SubEdit Player build 4056 and 4066 allows remote attackers to cause a denial of service (c... |
| CVE-2008-1972 | — | — | 1.1% | Apr 27, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in the user account creation feature in Exponent CMS 0.96.6-GA200710... |
| CVE-2008-1971 | — | — | 2.2% | Apr 27, 2008 | phShoutBox Final 1.5 and earlier only checks passwords when specified in $_POST, which allows remote attackers to gain p... |
| CVE-2008-1970 | — | — | 0.3% | Apr 27, 2008 | muCommander before 0.8.2 stores credentials.xml with insecure permissions, which allows local users to obtain credential... |
| CVE-2008-1968 | — | — | 0.8% | Apr 27, 2008 | Multiple SQL injection vulnerabilities in Cezanne 7 allow remote authenticated users to execute arbitrary SQL commands v... |
| CVE-2008-1967 | — | — | 1.5% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in CFLogon/CFLogon.asp in Cezanne 6.5.1 and 7 allows remote attackers to inject... |
| CVE-2008-1966 | — | — | 2.7% | Apr 27, 2008 | Multiple buffer overflows in the JAR file administration routines in the BSU JAVA subcomponent in IBM DB2 8 before FP16,... |
| CVE-2008-1961 | — | — | 1.0% | Apr 25, 2008 | SQL injection vulnerability in index.php in Voice Of Web AllMyGuests 0.4.1 allows remote attackers to execute arbitrary ... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now