2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-0409 | — | — | 1.3% | Jan 29, 2008 | Cross-site scripting (XSS) vulnerability in HTTP File Server (HFS) before 2.2c allows remote attackers to inject arbitra... |
| CVE-2008-0407 | — | — | 1.6% | Jan 29, 2008 | HTTP File Server (HFS) before 2.2c tags HTTP request log entries with the username sent during HTTP Basic Authentication... |
| CVE-2008-0406 | — | — | 3.6% | Jan 29, 2008 | HTTP File Server (HFS) before 2.2c, when account names are used as log filenames, allows remote attackers to cause a den... |
| CVE-2008-0464 | — | — | 3.3% | Jan 25, 2008 | Directory traversal vulnerability in archiv.cgi in absofort aconon Mail 2007 Enterprise SQL 11.7.0 and Mail 2004 Enterpr... |
| CVE-2008-0459 | — | — | 1.9% | Jan 25, 2008 | Directory traversal vulnerability in update/index.php in Liquid-Silver CMS 0.35, when magic_quotes_gpc is disabled, allo... |
| CVE-2008-0465 | — | — | 3.4% | Jan 25, 2008 | Directory traversal vulnerability in optimizer.php in Seagull 0.6.3 allows remote attackers to read arbitrary files via ... |
| CVE-2008-0460 | — | — | 14.6% | Jan 25, 2008 | Cross-site scripting (XSS) vulnerability in api.php in (1) MediaWiki 1.11 through 1.11.0rc1, 1.10 through 1.10.2, 1.9 th... |
| CVE-2008-0461 | — | — | 2.0% | Jan 25, 2008 | SQL injection vulnerability in index.php in the Search module in PHP-Nuke 8.0 FINAL and earlier, when magic_quotes_gpc i... |
| CVE-2008-0463 | — | — | 1.1% | Jan 25, 2008 | Cross-site scripting (XSS) vulnerability in the Workflow 4.7.x before 4.7.x-1.2 and 5.x before 5.x-1.2 module for Drupal... |
| CVE-2008-0458 | — | — | 1.9% | Jan 25, 2008 | Directory traversal vulnerability in function/sources.php in SLAED CMS 2.5 Lite allows remote attackers to include and e... |
| CVE-2008-0462 | — | — | 1.1% | Jan 25, 2008 | Cross-site scripting (XSS) vulnerability in the Archive 5.x before 5.x-1.8 module for Drupal allows remote attackers to ... |
| CVE-2008-0454 | — | — | 25.2% | Jan 25, 2008 | Cross-zone scripting vulnerability in the Internet Explorer web control in Skype 3.6.0.244, and earlier 3.5.x and 3.6.x ... |
| CVE-2008-0456 | — | — | 19.0% | Jan 25, 2008 | CRLF injection vulnerability in the mod_negotiation module in the Apache HTTP Server 2.2.6 and earlier in the 2.2.x seri... |
| CVE-2008-0455 | — | — | 64.8% | Jan 25, 2008 | Cross-site scripting (XSS) vulnerability in the mod_negotiation module in the Apache HTTP Server 2.2.6 and earlier in th... |
| CVE-2008-0444 | — | — | 1.3% | Jan 25, 2008 | Cross-site scripting (XSS) vulnerability in Electronic Logbook (ELOG) before 2.7.0 allows remote attackers to inject arb... |
| CVE-2008-0442 | — | — | 2.1% | Jan 25, 2008 | PHP remote file inclusion vulnerability in inc/linkbar.php in Small Axe Weblog 0.3.1 allows remote attackers to execute ... |
| CVE-2008-0441 | — | — | 0.4% | Jan 25, 2008 | IBM Tivoli Business Service Manager (TBSM) 4.1.1 stores passwords in cleartext (1) after external authentication, which ... |
| CVE-2008-0453 | — | — | 0.9% | Jan 25, 2008 | SQL injection vulnerability in list.php in Easysitenetwork Recipe allows remote attackers to execute arbitrary SQL comma... |
| CVE-2008-0452 | — | — | 2.8% | Jan 25, 2008 | Directory traversal vulnerability in articles.php in Siteman 1.1.9 allows remote attackers to read arbitrary files via d... |
| CVE-2008-0451 | — | — | 1.0% | Jan 25, 2008 | Multiple SQL injection vulnerabilities in PacerCMS 0.6 allow remote authenticated users to execute arbitrary SQL command... |
| CVE-2008-0450 | — | — | 1.2% | Jan 25, 2008 | Multiple PHP remote file inclusion vulnerabilities in BLOG:CMS 4.2.1.c allow remote attackers to execute arbitrary PHP c... |
| CVE-2008-0449 | — | — | 1.0% | Jan 25, 2008 | SQL injection vulnerability in paypalresult.asp in VP-ASP Shopping Cart 6.50 and earlier allows remote attackers to exec... |
| CVE-2008-0448 | — | — | 1.2% | Jan 25, 2008 | PHP remote file inclusion vulnerability in utils/class_HTTPRetriever.php in phpSearch allows remote attackers to execute... |
| CVE-2008-0447 | — | — | 1.0% | Jan 25, 2008 | SQL injection vulnerability in index.php in Foojan WMS PHP Weblog 1.0 allows remote attackers to execute arbitrary SQL c... |
| CVE-2008-0446 | — | — | 1.0% | Jan 25, 2008 | SQL injection vulnerability in voircom.php in LulieBlog 1.02 allows remote attackers to execute arbitrary SQL commands v... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now