2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-1670 | — | — | 4.8% | Apr 28, 2008 | Heap-based buffer overflow in the progressive PNG Image loader (decoders/pngloader.cpp) in KHTML in KDE 4.0.x up to 4.0.... |
| CVE-2008-1671 | — | — | 0.6% | Apr 28, 2008 | start_kdeinit in KDE 3.5.5 through 3.5.9, when installed setuid root, allows local users to cause a denial of service an... |
| CVE-2008-1995 | — | — | 2.2% | Apr 28, 2008 | Sun Java System Directory Proxy Server 6.0, 6.1, and 6.2 classifies a connection using the "bind-dn" criteria, which can... |
| CVE-2008-1988 | — | — | 2.6% | Apr 27, 2008 | Unrestricted file upload vulnerability in the file_upload function in core/misc.class.php in EncapsGallery 2.0.2 allows ... |
| CVE-2008-1986 | — | — | 1.4% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in liste_article.php in Blog Pixel Motion (aka PixelMotion) allows remote attac... |
| CVE-2008-1994 | — | — | 0.5% | Apr 27, 2008 | Multiple stack-based buffer overflows in (a) acon.c, (b) menu.c, and (c) child.c in Acon 1.0.5-5 through 1.0.5-7 allow l... |
| CVE-2008-1993 | — | — | 2.8% | Apr 27, 2008 | Acidcat CMS 3.4.1 does not restrict access to the FCKEditor component, which allows remote attackers to upload arbitrary... |
| CVE-2008-1992 | — | — | 3.0% | Apr 27, 2008 | Acidcat CMS 3.4.1 does not properly restrict access to (1) default_mail_aspemail.asp, (2) default_mail_cdosys.asp or (3)... |
| CVE-2008-1991 | — | — | 1.8% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in admin_colors_swatch.asp in Acidcat CMS 3.4.1 allows remote attackers to inje... |
| CVE-2008-1990 | — | — | 1.2% | Apr 27, 2008 | Multiple SQL injection vulnerabilities in Acidcat CMS 3.4.1 allow remote attackers to execute arbitrary SQL commands via... |
| CVE-2008-1989 | — | — | 3.6% | Apr 27, 2008 | PHP remote file inclusion vulnerability in 123flashchat.php in the 123 Flash Chat 6.8.0 module for e107, when register_g... |
| CVE-2008-1985 | — | — | 1.5% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in base.php in DigitalHive 2.0 RC2 allows remote attackers to inject arbitrary ... |
| CVE-2008-1987 | — | — | 1.0% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in search.php in EncapsGallery 2.0.2 allows remote attackers to inject arbitrar... |
| CVE-2008-1979 | — | — | 3.6% | Apr 27, 2008 | The Discovery Service (casdscvc) in CA ARCserve Backup 12.0.5454.0 and earlier allows remote attackers to cause a denial... |
| CVE-2008-1984 | — | — | 3.2% | Apr 27, 2008 | The eTrust Common Services (Transport) Daemon (eCSqdmn) in CA Secure Content Manager 8.0.28000.511 and earlier allows re... |
| CVE-2008-1983 | — | — | 1.5% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in Advanced Electron Forum (AEF) 1.0.6 allows remote attackers to inject arbitr... |
| CVE-2008-1982 | — | — | 3.2% | Apr 27, 2008 | SQL injection vulnerability in ss_load.php in the Spreadsheet (wpSS) 0.6 and earlier plugin for WordPress allows remote ... |
| CVE-2008-1981 | — | — | 0.7% | Apr 27, 2008 | Cross-site request forgery (CSRF) vulnerability in E-Publish 5.x before 5.x-1.1 and 6.x before 6.x-1.0 beta1, a Drupal m... |
| CVE-2008-1980 | — | — | 1.0% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in E-Publish 5.x before 5.x-1.1 and 6.x before 6.x-1.0 beta1, a Drupal module, ... |
| CVE-2008-1978 | — | — | 0.9% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in the Ubercart 5.x before 5.x-1.0 rc3 module for Drupal allows remote authenti... |
| CVE-2008-1977 | — | — | 0.7% | Apr 27, 2008 | Cross-site request forgery (CSRF) vulnerability in the Internationalization (i18n) Drupal module 5.x before 5.x-2.3 and ... |
| CVE-2008-1976 | — | — | 1.4% | Apr 27, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in the Drupal modules (1) Internationalization (i18n) 5.x before 5.x... |
| CVE-2008-1975 | — | — | 1.0% | Apr 27, 2008 | SQL injection vulnerability in index.php in E-RESERV 2.1 allows remote attackers to execute arbitrary SQL commands via t... |
| CVE-2008-1974 | — | — | 4.9% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in addevent.php in Horde Kronolith 2.1.7, Groupware Webmail Edition 1.0.6, and ... |
| CVE-2008-1973 | — | — | 5.8% | Apr 27, 2008 | Heap-based buffer overflow in SubEdit Player build 4056 and 4066 allows remote attackers to cause a denial of service (c... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now