2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-1894 | — | — | 2.0% | Apr 18, 2008 | Cross-site scripting (XSS) vulnerability in desktoplaunch/InfoView/logon/logon.object in BusinessObjects InfoView XI R2 ... |
| CVE-2008-1895 | — | — | 1.2% | Apr 18, 2008 | Multiple SQL injection vulnerabilities in Carbon Communities 2.4 and earlier allow remote attackers to execute arbitrary... |
| CVE-2008-1889 | — | — | 1.0% | Apr 18, 2008 | SQL injection vulnerability in viewcat.php in XplodPHP AutoTutorials 2.1 and earlier, when magic_quotes_gpc is disabled,... |
| CVE-2008-1890 | — | — | 1.1% | Apr 18, 2008 | SQL injection vulnerability in the Jom Comment 2.0 build 345 component for Joomla! allows remote attackers to execute ar... |
| CVE-2008-1891 | — | — | 2.8% | Apr 18, 2008 | Directory traversal vulnerability in WEBrick in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230... |
| CVE-2008-1892 | — | — | 1.0% | Apr 18, 2008 | Cross-site scripting (XSS) vulnerability in bs_auth.php in Blogator-script 0.95 and 1.01 allows remote attackers to inje... |
| CVE-2008-1893 | — | — | 2.3% | Apr 18, 2008 | PHP remote file inclusion vulnerability in index.php in W2B Online Banking allows remote attackers to execute arbitrary ... |
| CVE-2008-1888 | — | — | 8.0% | Apr 18, 2008 | Cross-site scripting (XSS) vulnerability in Microsoft Windows SharePoint Services 2.0 allows remote attackers to inject ... |
| CVE-2008-1887 | — | — | 6.3% | Apr 18, 2008 | Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a ... |
| CVE-2008-1885 | — | — | 4.1% | Apr 18, 2008 | Directory traversal vulnerability in the NeffyLauncher 1.0.5 ActiveX control (NeffyLauncher.dll) in CDNetworks Nefficien... |
| CVE-2008-1883 | — | — | 1.3% | Apr 18, 2008 | The server in Blackboard Academic Suite 7.x stores MD5 password hashes that are provided directly by clients, which make... |
| CVE-2008-1734 | — | — | 0.3% | Apr 18, 2008 | Interpretation conflict in PHP Toolkit before 1.0.1 on Gentoo Linux might allow local users to cause a denial of service... |
| CVE-2008-1693 | — | — | 4.9% | Apr 18, 2008 | The CairoFont::create function in CairoFontEngine.cc in Poppler, possibly before 0.8.0, as used in Xpdf, Evince, ePDFvie... |
| CVE-2008-1886 | — | — | 6.7% | Apr 18, 2008 | The NeffyLauncher 1.0.5 ActiveX control (NeffyLauncher.dll) in CDNetworks Nefficient Download uses weak cryptography for... |
| CVE-2008-1884 | — | — | 1.5% | Apr 18, 2008 | Directory traversal vulnerability in index.php in Wikepage Opus 13 2007.2 allows remote attackers to read arbitrary file... |
| CVE-2008-1881 | — | — | 11.8% | Apr 17, 2008 | Stack-based buffer overflow in the ParseSSA function (modules/demux/subtitle.c) in VLC 0.8.6e allows remote attackers to... |
| CVE-2008-1878 | — | — | 15.0% | Apr 17, 2008 | Stack-based buffer overflow in the demux_nsf_send_chunk function in src/demuxers/demux_nsf.c in xine-lib 1.1.12 and earl... |
| CVE-2008-1866 | — | — | 5.2% | Apr 17, 2008 | admin/modif_config.php in Blog Pixel Motion (aka PixelMotion) does not require admin authentication, which allows remote... |
| CVE-2008-0320 | — | — | 57.0% | Apr 17, 2008 | Heap-based buffer overflow in the OLE importer in OpenOffice.org before 2.4 allows remote attackers to cause a denial of... |
| CVE-2008-1024 | — | — | 4.0% | Apr 17, 2008 | Apple Safari before 3.1.1, when running on Windows XP or Vista, allows remote attackers to cause a denial of service (cr... |
| CVE-2008-1877 | — | — | 0.3% | Apr 17, 2008 | tss 0.8.1 allows local users to read arbitrary files via the -a parameter, which is processed while tss is running with ... |
| CVE-2008-1876 | — | — | 25.3% | Apr 17, 2008 | PHP remote file inclusion vulnerability in index.php in VisualPic 0.3.1 allows remote attackers to execute arbitrary PHP... |
| CVE-2008-1875 | — | — | 1.0% | Apr 17, 2008 | SQL injection vulnerability in index.php in Terong PHP Photo Gallery (aka Advanced Web Photo Gallery) 1.0 allows remote ... |
| CVE-2008-1874 | — | — | 0.9% | Apr 17, 2008 | SQL injection vulnerability in account/user/mail.html in Xpoze Pro 3.05 and earlier allows remote authenticated users to... |
| CVE-2008-1873 | — | — | 1.5% | Apr 17, 2008 | Cross-site scripting (XSS) vulnerability in the private message feature in Nuke ET 3.2 and 3.4, when using Internet Expl... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now