2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-6890SQL injection vulnerability in messages.asp in ASP Forum Script allows remote attackers to execute arbitrary SQL command...
CVE-2008-6889SQL injection vulnerability in Merchantsadd.asp in ASPReferral 5.3 allows remote attackers to execute arbitrary SQL comm...
CVE-2008-6888Cross-site scripting (XSS) vulnerability in signup.asp in Pre Classified Listings 1.0 allows remote attackers to inject ...
CVE-2008-6887SQL injection vulnerability in detailad.asp in Pre Classified Listings 1.0 allows remote attackers to execute arbitrary ...
CVE-2008-6886RSA EnVision 3.5.0, 3.5.1, 3.5.2, and 3.7.0 does not properly restrict access to unspecified user profile functionality,...
CVE-2008-6885Cross-site scripting (XSS) vulnerability in pmlite.php in XOOPS 2.3.1 and 2.3.2a allows remote attackers to inject arbit...
CVE-2008-6884Multiple directory traversal vulnerabilities in XOOPS 2.3.1, when register_globals is enabled, allow remote attackers to...
CVE-2008-6883SQL injection vulnerability in the Live Chat (com_livechat) component 1.0 for Joomla! allows remote attackers to execute...
CVE-2008-6882Live Chat (com_livechat) component 1.0 for Joomla! allows remote attackers to use the xmlhttp.php script as an open HTTP...
CVE-2008-6881Multiple SQL injection vulnerabilities in the Live Chat (com_livechat) component 1.0 for Joomla! allow remote attackers ...
CVE-2008-6880SQL injection vulnerability in joke.php in EasySiteNetwork Free Jokes Website allows remote attackers to execute arbitra...
CVE-2008-6879Cross-site scripting (XSS) vulnerability in Apache Roller 2.3, 3.0, 3.1, and 4.0 allows remote attackers to inject arbit...
CVE-2008-6878Directory traversal vulnerability in admin/includes/languages/english.php in Zen Cart 1.3.8a, 1.3.8, and earlier, when ....
CVE-2008-6877Directory traversal vulnerability in admin/includes/initsystem.php in Zen Cart 1.3.8 and 1.3.8a, when .htaccess is not s...
CVE-2008-6876Cross-site scripting (XSS) vulnerability in login.php in EsPartenaires 1.0 allows remote attackers to inject arbitrary w...
CVE-2008-6875SQL injection vulnerability in default.asp in ASP Product Catalog allows remote attackers to execute arbitrary SQL comma...
CVE-2008-6874Multiple SQL injection vulnerabilities in ASP SiteWare autoDealer 1 and 2 allow remote attackers to execute arbitrary SQ...
CVE-2008-6873SQL injection vulnerability in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the Tab...
CVE-2008-6872ASPThai.NET ASPThai Forums 8.5 stores sensitive information under the web root with insufficient access control, which a...
CVE-2008-6871Merlix Educate Server stores db.mdb under the web root with insufficient access control, which allows remote attackers t...
CVE-2008-6870Merlix Educate Server allows remote attackers to bypass intended security restrictions and obtain sensitive information ...
CVE-2008-6869Oramon Oracle Database Monitoring Tool 2.0.1 stores sensitive information under the web root with insufficient access co...
CVE-2008-6868Cross-site scripting (XSS) vulnerability in default/login.php in EditeurScripts EsBaseAdmin 2.1 allows remote attackers ...
CVE-2008-6867SQL injection vulnerability in content.php in Scripts For Sites (SFS) EZ Career allows remote attackers to execute arbit...
CVE-2008-6866SQL injection vulnerability in modules.php in the Current_Issue module for PHP-Nuke allows remote attackers to execute a...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now