2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-6879Cross-site scripting (XSS) vulnerability in Apache Roller 2.3, 3.0, 3.1, and 4.0 allows remote attackers to inject arbit...
CVE-2008-6878Directory traversal vulnerability in admin/includes/languages/english.php in Zen Cart 1.3.8a, 1.3.8, and earlier, when ....
CVE-2008-6877Directory traversal vulnerability in admin/includes/initsystem.php in Zen Cart 1.3.8 and 1.3.8a, when .htaccess is not s...
CVE-2008-6876Cross-site scripting (XSS) vulnerability in login.php in EsPartenaires 1.0 allows remote attackers to inject arbitrary w...
CVE-2008-6875SQL injection vulnerability in default.asp in ASP Product Catalog allows remote attackers to execute arbitrary SQL comma...
CVE-2008-6874Multiple SQL injection vulnerabilities in ASP SiteWare autoDealer 1 and 2 allow remote attackers to execute arbitrary SQ...
CVE-2008-6873SQL injection vulnerability in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the Tab...
CVE-2008-6872ASPThai.NET ASPThai Forums 8.5 stores sensitive information under the web root with insufficient access control, which a...
CVE-2008-6871Merlix Educate Server stores db.mdb under the web root with insufficient access control, which allows remote attackers t...
CVE-2008-6870Merlix Educate Server allows remote attackers to bypass intended security restrictions and obtain sensitive information ...
CVE-2008-6869Oramon Oracle Database Monitoring Tool 2.0.1 stores sensitive information under the web root with insufficient access co...
CVE-2008-6868Cross-site scripting (XSS) vulnerability in default/login.php in EditeurScripts EsBaseAdmin 2.1 allows remote attackers ...
CVE-2008-6867SQL injection vulnerability in content.php in Scripts For Sites (SFS) EZ Career allows remote attackers to execute arbit...
CVE-2008-6866SQL injection vulnerability in modules.php in the Current_Issue module for PHP-Nuke allows remote attackers to execute a...
CVE-2008-6865SQL injection vulnerability in modules.php in the Sectionsnew module for PHP-Nuke allows remote attackers to execute arb...
CVE-2008-6864Xigla Software Absolute Live Support .NET 5.1 allows remote attackers to bypass authentication and gain administrative a...
CVE-2008-6863Xigla Software Absolute Form Processor .NET 4.0 allows remote attackers to bypass authentication and gain administrative...
CVE-2008-6862Absolute Content Rotator 6.0 allows remote attackers to bypass authentication and gain administrative access by setting ...
CVE-2008-6861Xigla Software Absolute Newsletter 6.0 and 6.1 allows remote attackers to bypass authentication and gain administrative ...
CVE-2008-6860Xigla Software Absolute Poll Manager XE 4.1 allows remote attackers to bypass authentication and gain administrative acc...
CVE-2008-6859Xigla Software Absolute Control Panel XE 1.5 allows remote attackers to bypass authentication and gain administrative ac...
CVE-2008-6858Absolute Banner Manager .NET 4.0 allows remote attackers to bypass authentication and gain administrative access by sett...
CVE-2008-6857Absolute Podcast .NET 1.0 allows remote attackers to bypass authentication and gain administrative access by setting a c...
CVE-2008-6856Xigla Software Absolute News Manager.NET 5.1 allows remote attackers to bypass authentication and gain administrative ac...
CVE-2008-6855Xigla Software Absolute News Feed 1.0 and possibly 1.5 allows remote attackers to bypass authentication and gain adminis...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now