2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-0912Multiple heap-based buffer overflows in mlsrv10.exe in Sybase MobiLink 10.0.1.3629 and earlier, as used by SQL Anywhere ...
CVE-2008-0914Multiple cross-site scripting (XSS) vulnerabilities in the Mediation server in IPdiva SSL VPN Server 2.2 before 2.2.8.84...
CVE-2008-0922SQL injection vulnerability in the Manuales 0.1 module for PHP-Nuke allows remote attackers to execute arbitrary SQL com...
CVE-2008-0921SQL injection vulnerability in news.php in beContent 0.3.1 allows remote attackers to execute arbitrary SQL commands via...
CVE-2008-0916SQL injection vulnerability in the Highwood Design hwdVideoShare (com_hwdvideoshare) 1.1.3 Alpha component for Joomla! ...
CVE-2008-0917Cross-site scripting (XSS) vulnerability in Tor World Tor Search 1.1 and earlier, I-Navigator 4.0, Mobile Frontier 2.1 a...
CVE-2008-0918SQL injection vulnerability in includes/count_dl_or_link.inc.php in the astatsPRO (com_astatspro) 1.0.1 component for Jo...
CVE-2008-0920SQL injection vulnerability in port/modifyportform.php in Open Source Security Information Management (OSSIM) 0.9.9 rc5 ...
CVE-2008-0919Cross-site scripting (XSS) vulnerability in session/login.php in Open Source Security Information Management (OSSIM) 0.9...
CVE-2008-0913Cross-site scripting (XSS) vulnerability in Invision Power Board (IPB or IP.Board) 2.3.4 allows remote attackers to inje...
CVE-2008-0915The Mediation server in IPdiva SSL VPN Server 2.2 before 2.2.8.84 and 2.3 before 2.3.2.14 stores the number of remaining...
CVE-2008-0910Multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, F-Se...
CVE-2008-0162misc.c in splitvt 1.6.6 and earlier does not drop group privileges before executing xprop, which allows local users to g...
CVE-2008-0903Unspecified vulnerability in the BEA WebLogic Server and Express proxy plugin, as distributed before November 2007 and b...
CVE-2008-0902Multiple cross-site scripting (XSS) vulnerabilities in BEA WebLogic Server and Express 6.1 through 10.0 MP1 allow remote...
CVE-2008-0901BEA WebLogic Server and Express 7.0 through 10.0 allows remote attackers to conduct brute force password guessing attack...
CVE-2008-0900Session fixation vulnerability in BEA WebLogic Server and Express 8.1 SP4 through SP6, 9.2 through MP1, and 10.0 allows ...
CVE-2008-0899Cross-site scripting (XSS) vulnerability in the Administration Console in BEA WebLogic Server and Express 9.0 through 10...
CVE-2008-0898The distributed queue feature in JMS in BEA WebLogic Server 9.0 through 10.0, in certain configurations, does not proper...
CVE-2008-0897Unspecified vulnerability in BEA WebLogic Server 9.0 through 10.0 allows remote authenticated users without "receive" pe...
CVE-2008-0896BEA WebLogic Portal 10.0 and 9.2 through MP1, when an administrator deletes a single instance of a content portlet, remo...
CVE-2008-0895BEA WebLogic Server and WebLogic Express 6.1 through 10.0 allows remote attackers to bypass authentication for applicati...
CVE-2008-0909Cross-site scripting (XSS) vulnerability in browse.asp in Schoolwires Academic Portal allows remote attackers to inject ...
CVE-2008-0908SQL injection vulnerability in browse.asp in Schoolwires Academic Portal allows remote attackers to execute arbitrary SQ...
CVE-2008-0907SQL injection vulnerability in the Inhalt module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands ...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now