2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-6841 | — | — | 5.7% | Jul 1, 2009 | PHP remote file inclusion vulnerability in the Green Mountain Information Technology and Consulting Database Query (com_... |
| CVE-2008-6840 | — | — | 1.9% | Jul 1, 2009 | Multiple PHP remote file inclusion vulnerabilities in V-webmail 1.6.4 allow remote attackers to execute arbitrary PHP co... |
| CVE-2008-6839 | — | — | 1.5% | Jun 27, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in TGS Content Management 0.3.2r2 allow remote attackers to inject a... |
| CVE-2008-6838 | — | — | 1.8% | Jun 27, 2009 | Cross-site scripting (XSS) vulnerability in search.php in Zoph 0.7.2.1 allows remote attackers to inject arbitrary web s... |
| CVE-2008-6837 | — | — | 2.4% | Jun 27, 2009 | SQL injection vulnerability in Zoph 0.7.2.1 allows remote attackers to execute arbitrary SQL commands via unspecified ve... |
| CVE-2008-6836 | — | — | 0.6% | Jun 27, 2009 | Cross-site request forgery (CSRF) vulnerability in OpenID 5.x before 5x.-1.2, a module for Drupal, allows remote attacke... |
| CVE-2008-6835 | — | — | 1.1% | Jun 27, 2009 | Cross-site scripting (XSS) vulnerability in OpenID 5.x before 5.x-1.2, a module for Drupal, allows remote attackers to i... |
| CVE-2008-6834 | — | — | 4.0% | Jun 22, 2009 | Multiple directory traversal vulnerabilities in fuzzylime (cms) 3.01 and 3.01a allow remote attackers to include and exe... |
| CVE-2008-6833 | — | — | 8.6% | Jun 22, 2009 | Directory traversal vulnerability in commsrss.php in fuzzylime (cms) before 3.01b allows remote attackers to include and... |
| CVE-2008-5515 | — | — | 18.7% | Jun 16, 2009 | Apache Tomcat 4.1.0 through 4.1.39, 5.5.0 through 5.5.27, 6.0.0 through 6.0.18, and possibly earlier versions normalizes... |
| CVE-2008-2475 | — | — | 4.1% | Jun 9, 2009 | eBay Enhanced Picture Uploader ActiveX control (EPUWALcontrol.dll) before 1.0.27 allows remote attackers to execute arbi... |
| CVE-2008-6832 | — | — | 0.6% | Jun 8, 2009 | Cross-site request forgery (CSRF) vulnerability in Atlassian JIRA Enterprise Edition 3.13 allows remote attackers to hij... |
| CVE-2008-6831 | — | — | 1.3% | Jun 8, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Atlassian JIRA Enterprise Edition 3.13 allow remote attackers to ... |
| CVE-2008-6830 | — | — | 1.7% | Jun 8, 2009 | The disconnection feature in Citrix Web Interface 5.0 and 5.0.1 for Java Application Servers does not properly terminate... |
| CVE-2008-6829 | — | — | 37.6% | Jun 8, 2009 | VicFTPS 5.0 allows remote attackers to cause a denial of service (crash) via a LIST command that starts with a "/\/" (fo... |
| CVE-2008-6826 | — | — | 4.6% | Jun 8, 2009 | dhtml.pl in MHF Media Pro allows remote attackers to execute arbitrary commands via shell metacharacters in the page par... |
| CVE-2008-6825 | — | — | 20.3% | Jun 5, 2009 | Directory traversal vulnerability in user/index.php in Fonality trixbox CE 2.6.1 and earlier allows remote attackers to ... |
| CVE-2008-6824 | — | — | 3.6% | Jun 4, 2009 | The management interface on the A-LINK WL54AP3 and WL54AP2 access points has a blank default password for the admin acco... |
| CVE-2008-6823 | — | — | 1.5% | Jun 4, 2009 | Multiple cross-site request forgery (CSRF) vulnerabilities in the management interface on the A-LINK WL54AP3 and WL54AP2... |
| CVE-2008-6822 | — | — | 4.3% | Jun 4, 2009 | Unrestricted file upload vulnerability in uploadp.php in New Earth Programming Team (NEPT) imgupload (aka Image Uploader... |
| CVE-2008-6821 | — | — | 3.7% | Jun 3, 2009 | Buffer overflow in the DAS server in IBM DB2 8 before FP17, 9.1 before FP5, and 9.5 before FP2 might allow attackers to ... |
| CVE-2008-6820 | — | — | 1.8% | Jun 3, 2009 | The db2fmp process in IBM DB2 8 before FP17, 9.1 before FP5, and 9.5 before FP2 on Windows runs with "OS privilege," whi... |
| CVE-2008-2154 | — | — | 1.3% | Jun 3, 2009 | IBM DB2 8 before FP17, 9.1 before FP5, and 9.5 before FP2 provides an INSTALL_JAR (aka sqlj.install_jar) procedure, whic... |
| CVE-2008-6819 | — | — | 1.3% | Jun 1, 2009 | win32k.sys in Microsoft Windows Server 2003 and Vista allows local users to cause a denial of service (system crash) via... |
| CVE-2008-6818 | — | — | 0.9% | Jun 1, 2009 | Mole Group Real Estate Script 1.1 and earlier stores passwords in cleartext, which allows context-dependent attackers to... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now