2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-0191WordPress 2.2.x and 2.3.x allows remote attackers to obtain sensitive information via an invalid p parameter in an rss2 ...
CVE-2008-0190Multiple cross-site scripting (XSS) vulnerabilities in templates/example_template.php in AwesomeTemplateEngine allow rem...
CVE-2008-0127The administration interface in McAfee E-Business Server 8.5.2 and earlier allows remote attackers to cause a denial of ...
CVE-2008-0186Cross-site scripting (XSS) vulnerability in index.php in NetRisk 1.9.7 and possibly earlier allows remote attackers to i...
CVE-2008-0185SQL injection vulnerability in index.php in NetRisk 1.9.7 and possibly earlier versions allows remote attackers to execu...
CVE-2008-0184Absolute path traversal vulnerability in index.php in Sys-Hotel on Line System allows remote attackers to read arbitrary...
CVE-2008-0187SQL injection vulnerability in songinfo.php in SAM Broadcaster samPHPweb, possibly 4.2.2 and earlier, allows remote atta...
CVE-2008-0156Absolute path traversal vulnerability in index.php in Million Dollar Script 2.0.14 allows remote attackers to read arbit...
CVE-2008-0155Cross-site scripting (XSS) vulnerability in index.php in EvilBoard 0.1a (Alpha) allows remote attackers to inject arbitr...
CVE-2008-0154SQL injection vulnerability in index.php in EvilBoard 0.1a (Alpha) allows remote attackers to execute arbitrary SQL comm...
CVE-2008-0153telnetd.exe in Pragma TelnetServer 7.0.4.589 allows remote attackers to cause a denial of service (process crash and res...
CVE-2008-0152SLnet.exe in SeattleLab SLNet RF Telnet Server 4.1.1.3758 and earlier allows user-assisted remote attackers to cause a d...
CVE-2008-0151Heap-based buffer overflow in Foxit WAC Server 2.1.0.910, 2.0 Build 3503, and earlier allows remote attackers to cause a...
CVE-2008-0150Unspecified vulnerability in the LDAP authentication feature in Aruba Mobility Controller 2.3.6.15, 2.5.2.11, 2.5.4.25, ...
CVE-2008-0149TUTOS 1.3 allows remote attackers to read system information via a direct request to php/admin/phpinfo.php, which calls ...
CVE-2008-0147SQL injection vulnerability in index.php in SmallNuke 2.0.4 and earlier, when magic_quotes_gpc is disabled, allows remot...
CVE-2008-0159SQL injection vulnerability in index.php in eggBlog 3.1.0 and earlier allows remote attackers to execute arbitrary SQL c...
CVE-2008-0158Directory traversal vulnerability in index.php in Shop-Script 2.0 and possibly other versions allows remote attackers to...
CVE-2008-0157SQL injection vulnerability in FlexBB 0.6.3 and earlier allows remote attackers to execute arbitrary SQL commands via th...
CVE-2008-0148TUTOS 1.3 does not restrict access to php/admin/cmd.php, which allows remote attackers to execute arbitrary shell comman...
CVE-2008-0003Stack-based buffer overflow in the PAMBasicAuthenticator::PAMCallback function in OpenPegasus CIM management server (tog...
CVE-2008-0144PHP remote file inclusion vulnerability in index.php in NetRisk 1.9.7 and earlier allows remote attackers to execute arb...
CVE-2008-0143PHP remote file inclusion vulnerability in common/db.php in samPHPweb, possibly 4.2.2 and others, as provided with SAM B...
CVE-2008-0142Multiple SQL injection vulnerabilities in WebPortal CMS 0.6-beta allow remote attackers to execute arbitrary SQL command...
CVE-2008-0140Directory traversal vulnerability in error.php in Uebimiau Webmail 2.7.10 and 2.7.2 allows remote authenticated users to...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now