2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-0273 | — | — | 2.3% | Jan 15, 2008 | Interpretation conflict in Drupal 4.7.x before 4.7.11 and 5.x before 5.6, when Internet Explorer 6 is used, allows remot... |
| CVE-2008-0272 | — | — | 1.2% | Jan 15, 2008 | Cross-site request forgery (CSRF) vulnerability in the aggregator module in Drupal 4.7.x before 4.7.11 and 5.x before 5.... |
| CVE-2008-0271 | — | — | 0.5% | Jan 15, 2008 | The editor deletion form in BUEditor 4.7.x before 4.7.x-1.0 and 5.x before 5.x-1.1, a module for Drupal, does not follow... |
| CVE-2008-0270 | — | — | 0.8% | Jan 15, 2008 | SQL injection vulnerability in index.php in TaskFreak! 0.6.1 and earlier allows remote authenticated users to execute ar... |
| CVE-2008-0269 | — | — | 0.4% | Jan 15, 2008 | Unspecified vulnerability in the dotoprocs function in Sun Solaris 10 allows local users to cause a denial of service (p... |
| CVE-2008-0001 | — | — | 0.4% | Jan 15, 2008 | VFS in the Linux kernel before 2.6.22.16, and 2.6.23.x before 2.6.23.14, performs tests of access mode by using the flag... |
| CVE-2008-0267 | — | — | 1.2% | Jan 15, 2008 | Multiple SQL injection vulnerabilities in eTicket 1.5.5.2 allow remote authenticated users to execute arbitrary SQL comm... |
| CVE-2008-0266 | — | — | 0.4% | Jan 15, 2008 | Cross-site request forgery (CSRF) vulnerability in admin.php in eTicket 1.5.5.2 allows remote attackers to change the ad... |
| CVE-2008-0265 | — | — | 3.5% | Jan 15, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in the Search function in the web management interface in F5 BIG-IP ... |
| CVE-2008-0257 | — | — | 1.0% | Jan 15, 2008 | Cross-site scripting (XSS) vulnerability in search.pl in Dansie Search Engine 2.7 allows remote attackers to inject arbi... |
| CVE-2008-0258 | — | — | 1.5% | Jan 15, 2008 | Cross-site scripting (XSS) vulnerability in index.php in PHP Running Management (phpRunMan) before 1.0.3 allows remote a... |
| CVE-2008-0259 | — | — | 2.3% | Jan 15, 2008 | Multiple directory traversal vulnerabilities in _mg/php/mg_thumbs.php in minimal Gallery 0.8 allow remote attackers to r... |
| CVE-2008-0260 | — | — | 1.6% | Jan 15, 2008 | minimal Gallery 0.8 allows remote attackers to obtain configuration information via a direct request to php_info.php, wh... |
| CVE-2008-0255 | — | — | 2.0% | Jan 15, 2008 | SQL injection vulnerability in archive.php in iGaming 1.5, and 1.3.1 and earlier, allows remote attackers to execute arb... |
| CVE-2008-0254 | — | — | 0.9% | Jan 15, 2008 | SQL injection vulnerability in activate.php in TutorialCMS (aka Photoshop Tutorials) 1.02, when magic_quotes_gpc is disa... |
| CVE-2008-0253 | — | — | 1.0% | Jan 15, 2008 | SQL injection vulnerability in full_text.php in Binn SBuilder allows remote attackers to execute arbitrary SQL commands ... |
| CVE-2008-0256 | — | — | 1.0% | Jan 15, 2008 | Multiple SQL injection vulnerabilities in Matteo Binda ASP Photo Gallery 1.0 allow remote attackers to execute arbitrary... |
| CVE-2008-0279 | — | — | 1.0% | Jan 15, 2008 | SQL injection vulnerability in liretopic.php in Xforum 1.4 and possibly others allows remote attackers to execute arbitr... |
| CVE-2008-0278 | — | — | 1.6% | Jan 15, 2008 | SQL injection vulnerability in index.php in X7 Chat 2.0.5 and possibly earlier allows remote attackers to execute arbitr... |
| CVE-2008-0247 | — | — | 8.5% | Jan 12, 2008 | Heap-based buffer overflow in the Express Backup Server service (dsmsvc.exe) in IBM Tivoli Storage Manager (TSM) Express... |
| CVE-2008-0245 | — | — | 2.3% | Jan 12, 2008 | admin.php in UploadImage 1.0 does not check for the original password before making a change to a new password, which al... |
| CVE-2008-0244 | — | — | 80.3% | Jan 12, 2008 | SAP MaxDB 7.6.03 build 007 and earlier allows remote attackers to execute arbitrary commands via "&&" and other shell me... |
| CVE-2008-0243 | — | — | 1.8% | Jan 12, 2008 | Unspecified vulnerability in Lotus Domino 7.0.2 before Fix Pack 3 allows attackers to cause a denial of service via unkn... |
| CVE-2008-0242 | — | — | 0.4% | Jan 12, 2008 | Unspecified vulnerability in libdevinfo in Sun Solaris 10 allows local users to access files and gain privileges via unk... |
| CVE-2008-0252 | — | — | 2.6% | Jan 12, 2008 | Directory traversal vulnerability in the _get_file_path function in (1) lib/sessions.py in CherryPy 3.0.x up to 3.0.2, (... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now