2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-0146 | — | — | 1.5% | Jan 8, 2008 | Cross-site scripting (XSS) vulnerability in the error page in W3-mSQL allows remote attackers to inject arbitrary web sc... |
| CVE-2008-0140 | — | — | 2.3% | Jan 8, 2008 | Directory traversal vulnerability in error.php in Uebimiau Webmail 2.7.10 and 2.7.2 allows remote authenticated users to... |
| CVE-2008-0133 | — | — | 1.0% | Jan 8, 2008 | Multiple SQL injection vulnerabilities in Tribisur 2.1 and earlier allow remote attackers to execute arbitrary SQL comma... |
| CVE-2008-0134 | — | — | 1.1% | Jan 8, 2008 | Cross-site scripting (XSS) vulnerability in Forums/setup.asp in Snitz Forums 2000 3.4.06 and earlier allows remote attac... |
| CVE-2008-0135 | — | — | 2.5% | Jan 8, 2008 | Snitz Forums 2000 3.4.06 and earlier stores sensitive information under the web root with insufficient access control, w... |
| CVE-2008-0138 | — | — | 4.8% | Jan 8, 2008 | PHP remote file inclusion vulnerability in xoopsgallery/init_basic.php in the mod_gallery module for XOOPS, when registe... |
| CVE-2008-0137 | — | — | 2.4% | Jan 8, 2008 | PHP remote file inclusion vulnerability in config.inc.php in SNETWORKS PHP CLASSIFIEDS 5.0 allows remote attackers to ex... |
| CVE-2008-0136 | — | — | 1.2% | Jan 8, 2008 | Snitz Forums 2000 3.4.05 allows remote attackers to obtain sensitive information via a direct request to forum/whereami.... |
| CVE-2008-0141 | HIGH | 7.5 | 4.3% | Jan 8, 2008 | actions.php in WebPortal CMS 0.6-beta generates predictable passwords containing only the time of day, which makes it ea... |
| CVE-2008-0142 | — | — | 0.8% | Jan 8, 2008 | Multiple SQL injection vulnerabilities in WebPortal CMS 0.6-beta allow remote attackers to execute arbitrary SQL command... |
| CVE-2008-0143 | — | — | 6.3% | Jan 8, 2008 | PHP remote file inclusion vulnerability in common/db.php in samPHPweb, possibly 4.2.2 and others, as provided with SAM B... |
| CVE-2008-0132 | — | — | 9.0% | Jan 8, 2008 | Pragma FortressSSH 5.0 Build 4 Revision 293 and earlier handles long input to sshd.exe by creating an error-message wind... |
| CVE-2008-0131 | — | — | 0.8% | Jan 8, 2008 | Cross-site scripting (XSS) vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to i... |
| CVE-2008-0130 | — | — | 1.1% | Jan 8, 2008 | SQL injection vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to execute arbitr... |
| CVE-2008-0129 | — | — | 0.9% | Jan 8, 2008 | SQL injection vulnerability in starnet/addons/slideshow_full.php in Site@School 2.3.10 and earlier allows remote attacke... |
| CVE-2008-0101 | — | — | 3.7% | Jan 8, 2008 | Format string vulnerability in the swDebugf function in DuneApp.cpp in White_Dune 0.29 beta791 and earlier allows remote... |
| CVE-2008-0095 | — | — | 25.4% | Jan 8, 2008 | The SIP channel driver in Asterisk Open Source 1.4.x before 1.4.17, Business Edition before C.1.0-beta8, AsteriskNOW bef... |
| CVE-2008-0096 | — | — | 9.2% | Jan 8, 2008 | Multiple buffer overflows in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allow remote attackers to ex... |
| CVE-2008-0097 | — | — | 2.5% | Jan 8, 2008 | Format string vulnerability in the log function in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allows... |
| CVE-2008-0098 | — | — | 5.5% | Jan 8, 2008 | Buffer overflow in RealPlayer 11 build 6.0.14.748 allows remote attackers to execute arbitrary code via unspecified vect... |
| CVE-2008-0099 | — | — | 0.9% | Jan 8, 2008 | Multiple SQL injection vulnerabilities in MyPHP Forum 3.0 and earlier allow remote attackers to execute arbitrary SQL co... |
| CVE-2008-0100 | — | — | 7.6% | Jan 8, 2008 | Stack-based buffer overflow in the Scene::errorf function in Scene.cpp in White_Dune 0.29 beta791 and earlier allows rem... |
| CVE-2008-0094 | — | — | 3.2% | Jan 8, 2008 | Multiple directory traversal vulnerabilities in MODx Content Management System 0.9.6.1 allow remote attackers to (1) inc... |
| CVE-2008-0093 | — | — | 1.1% | Jan 8, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in newticket.php in eTicket 1.5.5.2, and 1.5.6 RC2 and RC3, allow re... |
| CVE-2008-0089 | — | — | 1.0% | Jan 4, 2008 | SQL injection vulnerability in uprofile.php in ClipShare allows remote attackers to execute arbitrary SQL commands via t... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now