2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-6879——Cross-site scripting (XSS) vulnerability in Apache Roller 2.3, 3.0, 3.1, and 4.0 allows remote attackers to inject arbit...
CVE-2008-6878——Directory traversal vulnerability in admin/includes/languages/english.php in Zen Cart 1.3.8a, 1.3.8, and earlier, when ....
CVE-2008-6877——Directory traversal vulnerability in admin/includes/initsystem.php in Zen Cart 1.3.8 and 1.3.8a, when .htaccess is not s...
CVE-2008-6876——Cross-site scripting (XSS) vulnerability in login.php in EsPartenaires 1.0 allows remote attackers to inject arbitrary w...
CVE-2008-6875——SQL injection vulnerability in default.asp in ASP Product Catalog allows remote attackers to execute arbitrary SQL comma...
CVE-2008-6874——Multiple SQL injection vulnerabilities in ASP SiteWare autoDealer 1 and 2 allow remote attackers to execute arbitrary SQ...
CVE-2008-6873——SQL injection vulnerability in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the Tab...
CVE-2008-6872——ASPThai.NET ASPThai Forums 8.5 stores sensitive information under the web root with insufficient access control, which a...
CVE-2008-6871——Merlix Educate Server stores db.mdb under the web root with insufficient access control, which allows remote attackers t...
CVE-2008-6870——Merlix Educate Server allows remote attackers to bypass intended security restrictions and obtain sensitive information ...
CVE-2008-6869——Oramon Oracle Database Monitoring Tool 2.0.1 stores sensitive information under the web root with insufficient access co...
CVE-2008-6868——Cross-site scripting (XSS) vulnerability in default/login.php in EditeurScripts EsBaseAdmin 2.1 allows remote attackers ...
CVE-2008-6867——SQL injection vulnerability in content.php in Scripts For Sites (SFS) EZ Career allows remote attackers to execute arbit...
CVE-2008-6866——SQL injection vulnerability in modules.php in the Current_Issue module for PHP-Nuke allows remote attackers to execute a...
CVE-2008-6865——SQL injection vulnerability in modules.php in the Sectionsnew module for PHP-Nuke allows remote attackers to execute arb...
CVE-2008-6864——Xigla Software Absolute Live Support .NET 5.1 allows remote attackers to bypass authentication and gain administrative a...
CVE-2008-6863——Xigla Software Absolute Form Processor .NET 4.0 allows remote attackers to bypass authentication and gain administrative...
CVE-2008-6862——Absolute Content Rotator 6.0 allows remote attackers to bypass authentication and gain administrative access by setting ...
CVE-2008-6861——Xigla Software Absolute Newsletter 6.0 and 6.1 allows remote attackers to bypass authentication and gain administrative ...
CVE-2008-6860——Xigla Software Absolute Poll Manager XE 4.1 allows remote attackers to bypass authentication and gain administrative acc...
CVE-2008-6859——Xigla Software Absolute Control Panel XE 1.5 allows remote attackers to bypass authentication and gain administrative ac...
CVE-2008-6858——Absolute Banner Manager .NET 4.0 allows remote attackers to bypass authentication and gain administrative access by sett...
CVE-2008-6857——Absolute Podcast .NET 1.0 allows remote attackers to bypass authentication and gain administrative access by setting a c...
CVE-2008-6856——Xigla Software Absolute News Manager.NET 5.1 allows remote attackers to bypass authentication and gain administrative ac...
CVE-2008-6855——Xigla Software Absolute News Feed 1.0 and possibly 1.5 allows remote attackers to bypass authentication and gain adminis...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now