2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-1894Cross-site scripting (XSS) vulnerability in desktoplaunch/InfoView/logon/logon.object in BusinessObjects InfoView XI R2 ...
CVE-2008-1895Multiple SQL injection vulnerabilities in Carbon Communities 2.4 and earlier allow remote attackers to execute arbitrary...
CVE-2008-1889SQL injection vulnerability in viewcat.php in XplodPHP AutoTutorials 2.1 and earlier, when magic_quotes_gpc is disabled,...
CVE-2008-1890SQL injection vulnerability in the Jom Comment 2.0 build 345 component for Joomla! allows remote attackers to execute ar...
CVE-2008-1891Directory traversal vulnerability in WEBrick in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230...
CVE-2008-1892Cross-site scripting (XSS) vulnerability in bs_auth.php in Blogator-script 0.95 and 1.01 allows remote attackers to inje...
CVE-2008-1893PHP remote file inclusion vulnerability in index.php in W2B Online Banking allows remote attackers to execute arbitrary ...
CVE-2008-1888Cross-site scripting (XSS) vulnerability in Microsoft Windows SharePoint Services 2.0 allows remote attackers to inject ...
CVE-2008-1887Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a ...
CVE-2008-1885Directory traversal vulnerability in the NeffyLauncher 1.0.5 ActiveX control (NeffyLauncher.dll) in CDNetworks Nefficien...
CVE-2008-1883The server in Blackboard Academic Suite 7.x stores MD5 password hashes that are provided directly by clients, which make...
CVE-2008-1734Interpretation conflict in PHP Toolkit before 1.0.1 on Gentoo Linux might allow local users to cause a denial of service...
CVE-2008-1693The CairoFont::create function in CairoFontEngine.cc in Poppler, possibly before 0.8.0, as used in Xpdf, Evince, ePDFvie...
CVE-2008-1886The NeffyLauncher 1.0.5 ActiveX control (NeffyLauncher.dll) in CDNetworks Nefficient Download uses weak cryptography for...
CVE-2008-1884Directory traversal vulnerability in index.php in Wikepage Opus 13 2007.2 allows remote attackers to read arbitrary file...
CVE-2008-1881Stack-based buffer overflow in the ParseSSA function (modules/demux/subtitle.c) in VLC 0.8.6e allows remote attackers to...
CVE-2008-1878Stack-based buffer overflow in the demux_nsf_send_chunk function in src/demuxers/demux_nsf.c in xine-lib 1.1.12 and earl...
CVE-2008-1866admin/modif_config.php in Blog Pixel Motion (aka PixelMotion) does not require admin authentication, which allows remote...
CVE-2008-0320Heap-based buffer overflow in the OLE importer in OpenOffice.org before 2.4 allows remote attackers to cause a denial of...
CVE-2008-1024Apple Safari before 3.1.1, when running on Windows XP or Vista, allows remote attackers to cause a denial of service (cr...
CVE-2008-1877tss 0.8.1 allows local users to read arbitrary files via the -a parameter, which is processed while tss is running with ...
CVE-2008-1876PHP remote file inclusion vulnerability in index.php in VisualPic 0.3.1 allows remote attackers to execute arbitrary PHP...
CVE-2008-1875SQL injection vulnerability in index.php in Terong PHP Photo Gallery (aka Advanced Web Photo Gallery) 1.0 allows remote ...
CVE-2008-1874SQL injection vulnerability in account/user/mail.html in Xpoze Pro 3.05 and earlier allows remote authenticated users to...
CVE-2008-1873Cross-site scripting (XSS) vulnerability in the private message feature in Nuke ET 3.2 and 3.4, when using Internet Expl...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now