2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-0443 | — | — | 12.8% | Jan 25, 2008 | Heap-based buffer overflow in the FileUploader.FUploadCtl.1 ActiveX control in FileUploader.dll 2.0.0.2 in Lycos FileUpl... |
| CVE-2008-0445 | — | — | 1.4% | Jan 25, 2008 | The replace_inline_img function in elogd in Electronic Logbook (ELOG) before 2.7.1 allows remote attackers to cause a de... |
| CVE-2008-0440 | — | — | 2.1% | Jan 23, 2008 | AlstraSoft Forum Pay Per Post Exchange 2.0 stores passwords in cleartext, which makes it easier for attackers to access ... |
| CVE-2008-0435 | — | — | 2.9% | Jan 23, 2008 | Directory traversal vulnerability in index.php in OZJournals 2.1.1 allows remote attackers to read portions of arbitrary... |
| CVE-2008-0434 | — | — | 10.4% | Jan 23, 2008 | Format string vulnerability in the AXIMilter module in AXIGEN Mail Server 5.0.2 allows remote attackers to execute arbit... |
| CVE-2008-0433 | — | — | 3.0% | Jan 23, 2008 | PHP remote file inclusion vulnerability in theme/phpAutoVideo/LightTwoOh/sidebar.php in Agares phpAutoVideo 2.21 and ear... |
| CVE-2008-0428 | — | — | 1.7% | Jan 23, 2008 | Multiple SQL injection vulnerabilities in the login function in system/class_permissions.php in bloofoxCMS 0.3 allow rem... |
| CVE-2008-0437 | — | — | 58.1% | Jan 23, 2008 | Multiple buffer overflows in the WebHPVCInstall.HPVirtualRooms14 ActiveX control in HPVirtualRooms14.dll 1.0.0.100, as u... |
| CVE-2008-0427 | — | — | 3.7% | Jan 23, 2008 | Directory traversal vulnerability in file.php in bloofoxCMS 0.3 allows remote attackers to read arbitrary files via a ..... |
| CVE-2008-0436 | — | — | 1.5% | Jan 23, 2008 | Cross-site scripting (XSS) vulnerability in profile-upload/upload.asp in PD9 Software MegaBBS 1.5.14b allows remote atta... |
| CVE-2008-0432 | — | — | 1.7% | Jan 23, 2008 | Cross-site scripting (XSS) vulnerability in index.php in phpAutoVideo 2.21 and earlier allows remote attackers to inject... |
| CVE-2008-0439 | — | — | 1.5% | Jan 23, 2008 | Cross-site scripting (XSS) vulnerability in templates/default/admincp/attachments_header.php in DeluxeBB 1.1 allows remo... |
| CVE-2008-0431 | — | — | 2.8% | Jan 23, 2008 | Directory traversal vulnerability in administrator/download.php in IDMOS (aka Phoenix) 1.0 allows remote attackers to re... |
| CVE-2008-0430 | — | — | 1.0% | Jan 23, 2008 | SQL injection vulnerability in form.php in 360 Web Manager 3.0 allows remote attackers to execute arbitrary SQL commands... |
| CVE-2008-0429 | — | — | 1.2% | Jan 23, 2008 | SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange 2.0 allows remote attackers to execut... |
| CVE-2008-0426 | — | — | 1.1% | Jan 23, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in submit.php in PacerCMS before 0.6.1 allow remote attackers to inj... |
| CVE-2008-0424 | — | — | 1.0% | Jan 23, 2008 | SQL injection vulnerability in blog.php in Mooseguy Blog System (MGBS) 1.0 allows remote attackers to execute arbitrary ... |
| CVE-2008-0425 | — | — | 2.6% | Jan 23, 2008 | Absolute path traversal vulnerability in explorerdir.php in Frimousse 0.0.2 allows remote attackers to read arbitrary fi... |
| CVE-2008-0423 | — | — | 34.4% | Jan 23, 2008 | Multiple PHP remote file inclusion vulnerabilities in Lama Software allow remote attackers to execute arbitrary PHP code... |
| CVE-2008-0422 | — | — | 3.3% | Jan 23, 2008 | SQL injection vulnerability in mail.php in boastMachine (aka bMachine) 3.1 and earlier allows remote attackers to execut... |
| CVE-2008-0438 | — | — | 2.9% | Jan 23, 2008 | Cross-site scripting (XSS) vulnerability in the font rendering functionality in Novemberborn sIFR 2.0.2 allows remote at... |
| CVE-2008-0028 | — | — | 2.0% | Jan 23, 2008 | Unspecified vulnerability in Cisco PIX 500 Series Security Appliance and 5500 Series Adaptive Security Appliance (ASA) b... |
| CVE-2008-0421 | — | — | 0.9% | Jan 23, 2008 | SQL injection vulnerability in Invision Gallery 2.0.7 and earlier allows remote attackers to execute arbitrary SQL comma... |
| CVE-2008-0029 | — | — | 2.2% | Jan 23, 2008 | Cisco Application Velocity System (AVS) before 5.1.0 is installed with default passwords for some system accounts, which... |
| CVE-2008-0398 | — | — | 1.4% | Jan 23, 2008 | Cross-site scripting (XSS) vulnerability in aflog 1.01, and possibly earlier versions, allows remote attackers to inject... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now