2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-0491 | — | — | 5.5% | Jan 30, 2008 | SQL injection vulnerability in fim_rss.php in the fGallery 2.4.1 plugin for WordPress allows remote attackers to execute... |
| CVE-2008-0470 | — | — | 30.9% | Jan 29, 2008 | A certain ActiveX control in Comodo AntiVirus 2.0 allows remote attackers to execute arbitrary commands via the ExecuteS... |
| CVE-2008-0481 | — | — | 3.9% | Jan 29, 2008 | Directory traversal vulnerability in RTE_file_browser.asp in Web Wiz Rich Text Editor 4.0 allows remote attackers to lis... |
| CVE-2008-0480 | — | — | 3.9% | Jan 29, 2008 | Multiple directory traversal vulnerabilities in Web Wiz Forums 9.07 and earlier allow remote attackers to list arbitrary... |
| CVE-2008-0479 | — | — | 3.9% | Jan 29, 2008 | Directory traversal vulnerability in RTE_file_browser.asp in Web Wiz NewsPad 1.02 allows remote attackers to list arbitr... |
| CVE-2008-0478 | — | — | 1.8% | Jan 29, 2008 | Directory traversal vulnerability in index.php in SetCMS 3.6.5 allows remote attackers to include and execute arbitrary ... |
| CVE-2008-0477 | — | — | 14.8% | Jan 29, 2008 | Stack-based buffer overflow in the QMPUpgrade.Upgrade.1 ActiveX control in QMPUpgrade.dll 1.0.0.1 in Move Networks Upgra... |
| CVE-2008-0476 | — | — | 1.2% | Jan 29, 2008 | ManageEngine Applications Manager 8.1 build 8100 does not check authentication for monitorType.do and unspecified other ... |
| CVE-2008-0475 | — | — | 1.2% | Jan 29, 2008 | ManageEngine Applications Manager 8.1 build 8100 allows remote attackers to obtain sensitive information ( Home->Summary... |
| CVE-2008-0474 | — | — | 1.4% | Jan 29, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine Applications Manager 8.1 build 8100 allow remote att... |
| CVE-2008-0473 | — | — | 2.6% | Jan 29, 2008 | RTE_popup_save_file.asp in Web Wiz Rich Text Editor 4.0 allows remote attackers to upload (1) .html and (2) .htm files v... |
| CVE-2008-0472 | — | — | 0.5% | Jan 29, 2008 | Cross-site request forgery (CSRF) vulnerability in modcp.php in Woltlab Burning Board (wBB) 2.3.6 PL2 allows remote atta... |
| CVE-2008-0471 | — | — | 0.6% | Jan 29, 2008 | Cross-site request forgery (CSRF) vulnerability in privmsg.php in phpBB 2.0.22 allows remote attackers to delete private... |
| CVE-2008-0469 | — | — | 1.2% | Jan 29, 2008 | SQL injection vulnerability in index.php in Tiger Php News System (TPNS) 1.0b and earlier allows remote attackers to exe... |
| CVE-2008-0468 | — | — | 1.0% | Jan 29, 2008 | SQL injection vulnerability in category.php in Flinx 1.3 and earlier allows remote attackers to execute arbitrary SQL co... |
| CVE-2008-0175 | — | — | 15.4% | Jan 29, 2008 | Unrestricted file upload vulnerability in GE Fanuc Proficy Real-Time Information Portal 2.6 and earlier allows remote at... |
| CVE-2008-0174 | CRITICAL | 9.8 | 2.0% | Jan 29, 2008 | GE Fanuc Proficy Real-Time Information Portal 2.6 and earlier uses HTTP Basic Authentication, which transmits usernames ... |
| CVE-2008-0467 | — | — | 6.4% | Jan 29, 2008 | Stack-based buffer overflow in Firebird before 2.0.4, and 2.1.x before 2.1.0 RC1, might allow remote attackers to execut... |
| CVE-2008-0387 | — | — | 45.9% | Jan 29, 2008 | Integer overflow in Firebird SQL 1.0.3 and earlier, 1.5.x before 1.5.6, 2.0.x before 2.0.4, and 2.1.x before 2.1.0 RC1 m... |
| CVE-2008-0176 | — | — | 7.9% | Jan 29, 2008 | Heap-based buffer overflow in w32rtr.exe in GE Fanuc CIMPLICITY HMI SCADA system 7.0 before 7.0 SIM 9, and earlier versi... |
| CVE-2008-0405 | — | — | 3.1% | Jan 29, 2008 | Multiple directory traversal vulnerabilities in HTTP File Server (HFS) before 2.2c, when account names are used as log f... |
| CVE-2008-0408 | — | — | 1.7% | Jan 29, 2008 | HTTP File Server (HFS) before 2.2c allows remote attackers to append arbitrary text to the log file by using the base64 ... |
| CVE-2008-0466 | — | — | 4.9% | Jan 29, 2008 | Web Wiz RTE_file_browser.asp in, as used in Web Wiz Rich Text Editor 4.0, Web Wiz Forums 9.07, and Web Wiz Newspad 1.02,... |
| CVE-2008-0008 | — | — | 0.6% | Jan 29, 2008 | The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return values from (1) setresui... |
| CVE-2008-0410 | — | — | 1.8% | Jan 29, 2008 | HTTP File Server (HFS) before 2.2c allows remote attackers to obtain configuration and usage details by using an id elem... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now