2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-6719 | — | — | 2.5% | Apr 13, 2009 | U&M Software Event Lister (aka JustListIt) 1.0 does not require administrative authentication for all scripts in the adm... |
| CVE-2008-6718 | — | — | 2.2% | Apr 13, 2009 | U&M Software JustBookIt 1.0 does not require administrative authentication for all scripts in the admin/ directory, whic... |
| CVE-2008-6717 | — | — | 2.5% | Apr 13, 2009 | U&M Software Signup 1.0 and 1.1 does not require administrative authentication for all scripts in the admin/ directory, ... |
| CVE-2008-6716 | — | — | 2.5% | Apr 13, 2009 | homeadmin/adminhome.php in Pre ADS Portal 2.0 and earlier does not require administrative authentication, which allows r... |
| CVE-2008-6715 | — | — | 1.4% | Apr 13, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Pre ADS Portal 2.0 and earlier allow remote attackers to inject a... |
| CVE-2008-6714 | — | — | 12.0% | Apr 10, 2009 | admin.php in xeCMS 1.0.0 RC2 and earlier allows remote attackers to bypass authentication and access the admin panel by ... |
| CVE-2008-6713 | — | — | 7.6% | Apr 10, 2009 | World in Conflict (WIC) 1.008 and earlier allows remote attackers to cause a denial of service (access violation and cra... |
| CVE-2008-6712 | — | — | 7.4% | Apr 10, 2009 | The HTTP/XML-RPC service in Crysis 1.21 (game version 1.1.1.6156) and earlier allows remote attackers to cause a denial ... |
| CVE-2008-6711 | — | — | 2.4% | Apr 10, 2009 | Unspecified vulnerability in the Web administration interface in Avaya Communication Manager 3.1.x before CM 3.1.4 SP2 a... |
| CVE-2008-6710 | — | — | 2.1% | Apr 10, 2009 | Unspecified vulnerability in the Web administration interface in Avaya Communication Manager 3.1.x before CM 3.1.4 SP2 a... |
| CVE-2008-6709 | — | — | 2.4% | Apr 10, 2009 | Unspecified vulnerability in the Web management interface in Avaya SIP Enablement Services (SES) 3.x and 4.0, as used wi... |
| CVE-2008-6708 | — | — | 2.1% | Apr 10, 2009 | Unspecified vulnerability in the Web management interface in Avaya SIP Enablement Services (SES) 3.x and 4.0, as used wi... |
| CVE-2008-6707 | — | — | 1.5% | Apr 10, 2009 | The Web management interface in Avaya SIP Enablement Services (SES) 3.x and 4.0, as used with Avaya Communication Manage... |
| CVE-2008-6706 | — | — | 2.3% | Apr 10, 2009 | Multiple unspecified vulnerabilities in the Web management interface in Avaya SIP Enablement Services (SES) 3.x and 4.0,... |
| CVE-2008-6705 | — | — | 2.1% | Apr 10, 2009 | The MultipacketReciever::RecievePacket function in S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote ... |
| CVE-2008-6704 | — | — | 2.0% | Apr 10, 2009 | Integer overflow in the NET_Compressor::Decompress function in S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier al... |
| CVE-2008-6703 | — | — | 8.3% | Apr 10, 2009 | Stack-based buffer overflow in the IPureServer::_Recieve function in S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earl... |
| CVE-2008-6702 | — | — | 3.4% | Apr 10, 2009 | S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote attackers to cause a denial of service (crash) via ... |
| CVE-2008-6701 | — | — | 1.4% | Apr 10, 2009 | NetScout (formerly Network General) Visualizer V2100 and InfiniStream i1730 do not restrict access to ResourceManager/en... |
| CVE-2008-6700 | — | — | 1.5% | Apr 10, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Butterfly Organizer 2.0.0 allow remote attackers to inject arbitr... |
| CVE-2008-6699 | — | — | 1.0% | Apr 10, 2009 | Cross-site scripting (XSS) vulnerability in Resource Library (tjs_reslib) 0.1.0 and earlier extension for TYPO3 allows r... |
| CVE-2008-6698 | — | — | 1.0% | Apr 10, 2009 | Cross-site scripting (XSS) vulnerability in TARGET-E WorldCup Bets (worldcup) 2.0.0 and earlier extension for TYPO3 allo... |
| CVE-2008-6697 | — | — | 1.1% | Apr 10, 2009 | SQL injection vulnerability in TARGET-E WorldCup Bets (worldcup) 2.0.0 and earlier extension for TYPO3 allows remote att... |
| CVE-2008-6696 | — | — | 1.1% | Apr 10, 2009 | SQL injection vulnerability in Fussballtippspiel (toto) 0.1.1 and earlier extension for TYPO3 allows remote attackers to... |
| CVE-2008-6695 | — | — | 1.3% | Apr 10, 2009 | SQL injection vulnerability in TIMTAB social bookmark icons (timtab_sociable) 2.0.4 and earlier extension for TYPO3 allo... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now