2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-1759SQL injection vulnerability in the jeuxflash module for KwsPHP allows remote attackers to execute arbitrary SQL commands...
CVE-2008-1762Opera before 9.27 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a...
CVE-2008-1763SQL injection vulnerability in _blogadata/include/sond_result.php in Blogator-script 0.95 allows remote attackers to exe...
CVE-2008-1764Unspecified vulnerability in Opera before 9.27 has unknown impact and attack vectors related to "keyboard handling of pa...
CVE-2008-1766Multiple unspecified vulnerabilities in phpBB before 3.0.1 have unknown impact and attack vectors, related to "two minor...
CVE-2008-1757Cross-site scripting (XSS) vulnerability in index.php in the ConcoursPhoto module for KwsPHP 1.0 allows remote attackers...
CVE-2008-1755Directory traversal vulnerability in the showSource function in showSource.php in World of Phaos 4.0.1 allows remote att...
CVE-2008-1753Cross-site scripting (XSS) vulnerability in system/workplace/admin/workplace/sessions.jsp in Alkacon OpenCMS 7.0.3 allow...
CVE-2008-1756Unspecified vulnerability in the Qmaster daemon in Sun N1 Grid Engine 6.1 allows local users to cause a denial of servic...
CVE-2008-1754Symantec Altiris Deployment Solution before 6.9.164 stores the Deployment Solution Agent (aka AClient) password in clear...
CVE-2008-1750SQL injection vulnerability in Integry Systems LiveCart 1.1.1 and earlier allows remote attackers to execute arbitrary S...
CVE-2008-1751Multiple directory traversal vulnerabilities in index.php in Ksemail allow remote attackers to read arbitrary local file...
CVE-2008-1752ezRADIUS 0.1 stores sensitive information under the web root with insufficient access control, which allows remote attac...
CVE-2008-1727KnowledgeQuest 2.5 and 2.6 does not require authentication for access to admincheck.php, which allows remote attackers t...
CVE-2008-1729The menu system in Drupal 6 before 6.2 has incorrect menu settings, which allows remote attackers to (1) edit the profil...
CVE-2008-1726Multiple SQL injection vulnerabilities in KnowledgeQuest 2.6, when magic_quotes_gpc is disabled, allow remote attackers ...
CVE-2008-1728ConnectionManagerImpl.java in Ignite Realtime Openfire 3.4.5 allows remote authenticated users to cause a denial of serv...
CVE-2008-1733SQL injection vulnerability in puarcade.class.php 2.2 and earlier in the Pragmatic Utopia PU Arcade (com_puarcade) compo...
CVE-2008-1732SQL injection vulnerability in showpredictionsformatch.php in Prediction Football 1.x allows remote attackers to execute...
CVE-2008-1724Stack-based buffer overflow in the IActiveXTransfer.FileTransfer method in the SecureTransport FileTransfer ActiveX cont...
CVE-2008-1725The IBizEBank.FIProfile.1 ActiveX control in fiprofile20.ocx in IBiz E-Banking Integrator (formerly IBiz OFX Integrator)...
CVE-2008-1731The Simple Access module for Drupal 5.x through 5.x-1.2-2 does not properly handle the privacy information for nodes, wh...
CVE-2008-1730Directory traversal vulnerability in download.html in ARWScripts Gallery Script Lite (aka gallery-script-lite or Free Ph...
CVE-2008-1703Multiple buffer overflows in TIBCO Software Rendezvous before 8.1.0, as used in multiple TIBCO products, allow remote at...
CVE-2008-1704Multiple buffer overflows in TIBCO Software Enterprise Message Service (EMS) before 4.4.3, and iProcess Engine 10.6.0 th...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now