2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-0902Multiple cross-site scripting (XSS) vulnerabilities in BEA WebLogic Server and Express 6.1 through 10.0 MP1 allow remote...
CVE-2008-0901BEA WebLogic Server and Express 7.0 through 10.0 allows remote attackers to conduct brute force password guessing attack...
CVE-2008-0162misc.c in splitvt 1.6.6 and earlier does not drop group privileges before executing xprop, which allows local users to g...
CVE-2008-0900Session fixation vulnerability in BEA WebLogic Server and Express 8.1 SP4 through SP6, 9.2 through MP1, and 10.0 allows ...
CVE-2008-0899Cross-site scripting (XSS) vulnerability in the Administration Console in BEA WebLogic Server and Express 9.0 through 10...
CVE-2008-0898The distributed queue feature in JMS in BEA WebLogic Server 9.0 through 10.0, in certain configurations, does not proper...
CVE-2008-0897Unspecified vulnerability in BEA WebLogic Server 9.0 through 10.0 allows remote authenticated users without "receive" pe...
CVE-2008-0896BEA WebLogic Portal 10.0 and 9.2 through MP1, when an administrator deletes a single instance of a content portlet, remo...
CVE-2008-0895BEA WebLogic Server and WebLogic Express 6.1 through 10.0 allows remote attackers to bypass authentication for applicati...
CVE-2008-0894Apple Safari might allow remote attackers to obtain potentially sensitive memory contents or cause a denial of service (...
CVE-2008-0638Heap-based buffer overflow in the Veritas Enterprise Administrator (VEA) service (aka vxsvc.exe) in Symantec Veritas Sto...
CVE-2008-0875Unspecified vulnerability in Hitachi EUR Print Manager, and related Client and Local Server products, 05-06 through 05-0...
CVE-2008-0882Double free vulnerability in the process_browse_data function in CUPS 1.3.5 allows remote attackers to cause a denial of...
CVE-2008-0881SQL injection vulnerability in modules.php in the Okul 1.0 module for PHP-Nuke allows remote attackers to execute arbitr...
CVE-2008-0880SQL injection vulnerability in modules.php in the EasyContent module for PHP-Nuke allows remote attackers to execute arb...
CVE-2008-0879SQL injection vulnerability in modules.php in the Web_Links module for PHP-Nuke allows remote attackers to execute arbit...
CVE-2008-0878SQL injection vulnerability in index.php in the MyAnnonces 1.7 and earlier module for RunCMS allows remote attackers to ...
CVE-2008-0877Multiple cross-site scripting (XSS) vulnerabilities in Jinzora Media Jukebox 2.7.5 allow remote attackers to inject arbi...
CVE-2008-0876Unspecified vulnerability in the SEWB3 messaging service in Hitachi SEWB3/PLATFORM and SEWB3/MI-PLATFORM 01-00 through 0...
CVE-2008-0874SQL injection vulnerability in index.php in the eEmpregos module for XOOPS allows remote attackers to execute arbitrary ...
CVE-2008-0873SQL injection vulnerability in index.php in the jlmZone Classifieds module for XOOPS allows remote attackers to execute ...
CVE-2008-0872Cross-site scripting (XSS) vulnerability in SmarterTools SmarterMail Enterprise 4.3 allows remote attackers to inject ar...
CVE-2008-0871Multiple stack-based buffer overflows in Now SMS/MMS Gateway 2007.06.27 and earlier allow remote attackers to execute ar...
CVE-2008-0865Unspecified vulnerability in BEA WebLogic Portal 8.1 through SP6 allows remote attackers to bypass entitlements for inst...
CVE-2008-0868Cross-site scripting (XSS) vulnerability in Groupspace in BEA WebLogic Portal 10.0 and 9.2 through Maintenance Pack 1 al...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now