2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-1966 | — | — | 2.7% | Apr 27, 2008 | Multiple buffer overflows in the JAR file administration routines in the BSU JAVA subcomponent in IBM DB2 8 before FP16,... |
| CVE-2008-1967 | — | — | 1.5% | Apr 27, 2008 | Cross-site scripting (XSS) vulnerability in CFLogon/CFLogon.asp in Cezanne 6.5.1 and 7 allows remote attackers to inject... |
| CVE-2008-1968 | — | — | 0.8% | Apr 27, 2008 | Multiple SQL injection vulnerabilities in Cezanne 7 allow remote authenticated users to execute arbitrary SQL commands v... |
| CVE-2008-1969 | — | — | 1.3% | Apr 27, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in Cezanne 6.5.1 and 7 allow remote attackers to inject arbitrary we... |
| CVE-2008-1970 | — | — | 0.3% | Apr 27, 2008 | muCommander before 0.8.2 stores credentials.xml with insecure permissions, which allows local users to obtain credential... |
| CVE-2008-1972 | — | — | 1.1% | Apr 27, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in the user account creation feature in Exponent CMS 0.96.6-GA200710... |
| CVE-2008-1971 | — | — | 2.2% | Apr 27, 2008 | phShoutBox Final 1.5 and earlier only checks passwords when specified in $_POST, which allows remote attackers to gain p... |
| CVE-2008-1958 | — | — | 3.3% | Apr 25, 2008 | Unrestricted file upload vulnerability in the ajout_cat mode in admin/main.php in Tr Script News 2.1 allows remote authe... |
| CVE-2008-1956 | — | — | 1.5% | Apr 25, 2008 | Cross-site scripting (XSS) vulnerability in index.php in Wikepage Opus 13 2007.2 allows remote attackers to inject arbit... |
| CVE-2008-1961 | — | — | 1.0% | Apr 25, 2008 | SQL injection vulnerability in index.php in Voice Of Web AllMyGuests 0.4.1 allows remote attackers to execute arbitrary ... |
| CVE-2008-1963 | — | — | 39.0% | Apr 25, 2008 | PHP remote file inclusion vulnerability in includes/functions.php in Quate Grape Web Statistics 0.2a allows remote attac... |
| CVE-2008-1962 | — | — | 1.8% | Apr 25, 2008 | Multiple directory traversal vulnerabilities in Aterr 0.9.1 allow remote attackers to include and execute arbitrary loca... |
| CVE-2008-1960 | — | — | 1.0% | Apr 25, 2008 | Cross-site scripting (XSS) vulnerability in cgi-bin/contray/search.cgi in ContRay 3.x allows remote attackers to inject ... |
| CVE-2008-1959 | — | — | 3.5% | Apr 25, 2008 | Stack-based buffer overflow in the get_remote_video_port_media function in call.cpp in SIPp 3.0 allows remote attackers ... |
| CVE-2008-1957 | — | — | 1.2% | Apr 25, 2008 | SQL injection vulnerability in news.php in Tr Script News 2.1 allows remote attackers to execute arbitrary SQL commands ... |
| CVE-2008-0712 | — | — | 4.7% | Apr 25, 2008 | Unspecified vulnerability in the HP HPeDiag (aka eSupportDiagnostics) ActiveX control in hpediag.dll in HP Software Upda... |
| CVE-2008-1964 | — | — | 1.8% | Apr 25, 2008 | Stack-based buffer overflow in the demux_nsf_send_headers function in src/demuxers/demux_nsf.c in xine-lib allows remote... |
| CVE-2008-1965 | — | — | 10.7% | Apr 25, 2008 | Argument injection vulnerability in the cai: URI handler in rcplauncher in IBM Lotus Expeditor Client for Desktop 6.1.1 ... |
| CVE-2008-1955 | — | — | 1.4% | Apr 25, 2008 | Cross-site scripting (XSS) vulnerability in rep.php in Martin BOUCHER MyBoard 1.0.12 allows remote attackers to inject a... |
| CVE-2008-1954 | — | — | 1.2% | Apr 25, 2008 | SQL injection vulnerability in one_day.php in Web Calendar Pro 4.1 and earlier allows remote attackers to execute arbitr... |
| CVE-2008-1953 | — | — | 1.0% | Apr 25, 2008 | Cross-site scripting (XSS) vulnerability in the Sitedesigner before 1.1.5 search template in Magnolia Enterprise Edition... |
| CVE-2008-1940 | — | — | 0.3% | Apr 25, 2008 | The RBAC functionality in grsecurity before 2.1.11-2.6.24.5 and 2.1.11-2.4.36.2 does not enforce user_transition_deny an... |
| CVE-2008-1768 | — | — | 2.7% | Apr 25, 2008 | Multiple integer overflows in VLC before 0.8.6f allow remote attackers to cause a denial of service (crash) via the (1) ... |
| CVE-2008-1769 | — | — | 7.2% | Apr 25, 2008 | VLC before 0.8.6f allow remote attackers to cause a denial of service (crash) via a crafted Cinepak file that triggers a... |
| CVE-2008-1942 | — | — | 4.1% | Apr 25, 2008 | Foxit Reader 2.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a ... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now