2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-1622 | — | — | 1.0% | Apr 2, 2008 | Multiple PHP remote file inclusion vulnerabilities in GeeCarts allow remote attackers to execute arbitrary PHP code via ... |
| CVE-2008-1620 | — | — | 3.0% | Apr 2, 2008 | Directory traversal vulnerability in 2X TFTP service (TFTPd.exe) 3.2.0.0 and earlier in 2X ThinClientServer 5.0_sp1-r349... |
| CVE-2008-1621 | — | — | 1.5% | Apr 2, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in GeeCarts allow remote attackers to inject arbitrary web script or... |
| CVE-2008-1638 | — | — | 0.3% | Apr 2, 2008 | Nik Sharpener Pro, possibly 2.0, uses world-writable permissions for plug-in files, which allows local users to gain pri... |
| CVE-2008-1639 | — | — | 1.0% | Apr 2, 2008 | SQL injection vulnerability in index.php in Neat weblog 0.2 allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2008-1640 | — | — | 1.0% | Apr 2, 2008 | SQL injection vulnerability in jgs_treffen.php in the JGS-XA JGS-Treffen 2.0.2 and earlier addon for Woltlab Burning Boa... |
| CVE-2008-1629 | — | — | 1.0% | Apr 2, 2008 | Cross-site scripting (XSS) vulnerability in PHPkrm before 1.5.0 allows remote attackers to inject arbitrary web script o... |
| CVE-2008-1628 | — | — | 1.0% | Apr 2, 2008 | Stack-based buffer overflow in the audit_log_user_command function in lib/audit_logging.c in Linux Audit before 1.7 migh... |
| CVE-2008-1627 | — | — | 1.0% | Apr 2, 2008 | CDS Invenio 0.92.1 and earlier allows remote authenticated users to delete email notification alerts of arbitrary users ... |
| CVE-2008-1632 | — | — | 1.0% | Apr 2, 2008 | Multiple SQL injection vulnerabilities in CuteFlow 2.10.0 allow remote authenticated users to execute arbitrary SQL comm... |
| CVE-2008-1633 | — | — | 1.5% | Apr 2, 2008 | Unspecified vulnerability in Mondo Rescue before 2.2.5 has unknown impact and attack vectors, related to the use of (1) ... |
| CVE-2008-1630 | — | — | 1.1% | Apr 2, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in CuteFlow 1.5.0 and 2.10.0 allow remote attackers to inject arbitr... |
| CVE-2008-1634 | — | — | 1.0% | Apr 2, 2008 | Cross-site scripting (XSS) vulnerability in index.php in JV2 Folder Gallery 3.1 allows remote attackers to inject arbitr... |
| CVE-2008-1635 | — | — | 3.0% | Apr 2, 2008 | Directory traversal vulnerability in view_private.php in Keep It Simple Guest Book (KISGB) 5.0.0 and earlier allows remo... |
| CVE-2008-1636 | — | — | 1.0% | Apr 2, 2008 | Cross-site scripting (XSS) vulnerability in index.php in JV2 Quick Gallery 1.1 allows remote attackers to inject arbitra... |
| CVE-2008-1637 | — | — | 4.0% | Apr 2, 2008 | PowerDNS Recursor before 3.1.5 uses insufficient randomness to calculate (1) TRXID values and (2) UDP source port number... |
| CVE-2008-1641 | — | — | 1.0% | Apr 2, 2008 | SQL injection vulnerability in default.asp in EfesTECH Video 5.0 allows remote attackers to execute arbitrary SQL comman... |
| CVE-2008-1642 | — | — | 1.5% | Apr 2, 2008 | Directory traversal vulnerability in index.php in Sava's GuestBook 2.0 allows remote attackers to include and execute ar... |
| CVE-2008-1643 | — | — | 1.8% | Apr 2, 2008 | Directory traversal vulnerability in the PXE TFTP Service (PXEMTFTP.exe) in LANDesk Management Suite (LDMS) 8.7 SP5 and ... |
| CVE-2008-1644 | — | — | 1.1% | Apr 2, 2008 | SQL injection vulnerability in viewlinks.php in Sava's Link Manager 2.0 allows remote attackers to execute arbitrary SQL... |
| CVE-2008-1645 | — | — | 2.3% | Apr 2, 2008 | Directory traversal vulnerability in body.php in phpSpamManager (phpSM) 0.53 beta allows remote attackers to read arbitr... |
| CVE-2008-1646 | — | — | 2.7% | Apr 2, 2008 | SQL injection vulnerability in wp-download.php in the WP-Download 1.2 plugin for WordPress allows remote attackers to ex... |
| CVE-2008-1647 | — | — | 7.0% | Apr 2, 2008 | The ChilkatHttp.ChilkatHttp.1 and ChilkatHttp.ChilkatHttpRequest.1 ActiveX controls in ChilkatHttp.dll 2.4.0.0, 2.3.0.0,... |
| CVE-2008-1648 | — | — | 2.1% | Apr 2, 2008 | Sympa before 5.4 allows remote attackers to cause a denial of service (daemon crash) via an e-mail message with a malfor... |
| CVE-2008-1650 | — | — | 1.3% | Apr 2, 2008 | SQL injection vulnerability in dynamicpages/index.php in EasyNews 4.0 allows remote attackers to execute arbitrary SQL c... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now