2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-1634Cross-site scripting (XSS) vulnerability in index.php in JV2 Folder Gallery 3.1 allows remote attackers to inject arbitr...
CVE-2008-1635Directory traversal vulnerability in view_private.php in Keep It Simple Guest Book (KISGB) 5.0.0 and earlier allows remo...
CVE-2008-1636Cross-site scripting (XSS) vulnerability in index.php in JV2 Quick Gallery 1.1 allows remote attackers to inject arbitra...
CVE-2008-1637PowerDNS Recursor before 3.1.5 uses insufficient randomness to calculate (1) TRXID values and (2) UDP source port number...
CVE-2008-1638Nik Sharpener Pro, possibly 2.0, uses world-writable permissions for plug-in files, which allows local users to gain pri...
CVE-2008-1639SQL injection vulnerability in index.php in Neat weblog 0.2 allows remote attackers to execute arbitrary SQL commands vi...
CVE-2008-1640SQL injection vulnerability in jgs_treffen.php in the JGS-XA JGS-Treffen 2.0.2 and earlier addon for Woltlab Burning Boa...
CVE-2008-1641SQL injection vulnerability in default.asp in EfesTECH Video 5.0 allows remote attackers to execute arbitrary SQL comman...
CVE-2008-1642Directory traversal vulnerability in index.php in Sava's GuestBook 2.0 allows remote attackers to include and execute ar...
CVE-2008-1643Directory traversal vulnerability in the PXE TFTP Service (PXEMTFTP.exe) in LANDesk Management Suite (LDMS) 8.7 SP5 and ...
CVE-2008-1645Directory traversal vulnerability in body.php in phpSpamManager (phpSM) 0.53 beta allows remote attackers to read arbitr...
CVE-2008-1646SQL injection vulnerability in wp-download.php in the WP-Download 1.2 plugin for WordPress allows remote attackers to ex...
CVE-2008-1647The ChilkatHttp.ChilkatHttp.1 and ChilkatHttp.ChilkatHttpRequest.1 ActiveX controls in ChilkatHttp.dll 2.4.0.0, 2.3.0.0,...
CVE-2008-1648Sympa before 5.4 allows remote attackers to cause a denial of service (daemon crash) via an e-mail message with a malfor...
CVE-2008-1649Cross-site scripting (XSS) vulnerability in staticpages/easypublish/index.php in EasyNews 4.0 allows remote attackers to...
CVE-2008-1650SQL injection vulnerability in dynamicpages/index.php in EasyNews 4.0 allows remote attackers to execute arbitrary SQL c...
CVE-2008-1651Directory traversal vulnerability in admin/login.php in EasyNews 4.0 allows remote attackers to include and execute arbi...
CVE-2008-1652Directory traversal vulnerability in the _serve_request_multiple function in lib/Perlbal/ClientHTTPBase.pm in Perlbal be...
CVE-2008-1653Directory traversal vulnerability in index.php in Sava's Link Manager 2.0 allows remote attackers to include and execute...
CVE-2008-1614suPHP before 0.6.3 allows local users to gain privileges via (1) a race condition that involves multiple symlink changes...
CVE-2008-1619The ssm_i emulation in Xen 5.1 on IA64 architectures allows attackers to cause a denial of service (dom0 panic) via cert...
CVE-2008-1515The SOAP interface in OTRS 2.1.x before 2.1.8 and 2.2.x before 2.2.6 allows remote attackers to "read and modify objects...
CVE-2008-1612The arrayShrink function (lib/Array.c) in Squid 2.6.STABLE17 allows attackers to cause a denial of service (process exit...
CVE-2008-1610Stack-based buffer overflow in TallSoft Quick TFTP Server Pro 2.1 allows remote attackers to cause a denial of service o...
CVE-2008-1609Multiple PHP remote file inclusion vulnerabilities in just another flat file (JAF) CMS 4.0 RC2 allow remote attackers to...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now