2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-6679Buffer overflow in the BaseFont writer module in Ghostscript 8.62, and possibly other versions, allows remote attackers ...
CVE-2008-6678SQL injection vulnerability in asp/includes/contact.asp in QuickerSite 1.8.5 allows remote attackers to execute arbitrar...
CVE-2008-6677Unrestricted file upload vulnerability in fckeditor251/editor/filemanager/connectors/asp/upload.asp in QuickerSite 1.8.5...
CVE-2008-6676QuickerSite 1.8.5 allows remote attackers to obtain sensitive information via a request to showThumb.aspx without any pa...
CVE-2008-6675Multiple cross-site scripting (XSS) vulnerabilities in QuickerSite 1.8.5 allow remote attackers to inject arbitrary web ...
CVE-2008-6674mailPage.asp in QuickerSite 1.8.5 allows remote attackers to flood e-mail accounts with messages via a large number of r...
CVE-2008-6673asp/bs_login.asp in QuickerSite 1.8.5 does not properly restrict access to administrative functionality, which allows re...
CVE-2008-6672Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service ("runtime error") via a crafted j...
CVE-2008-6671Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service (infinite loop and hang) via a cr...
CVE-2008-6670Integer overflow in Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service (crash) via a...
CVE-2008-6669viewrq.php in nweb2fax 0.2.7 and earlier allows remote attackers to execute arbitrary code via shell metacharacters in t...
CVE-2008-6668Multiple directory traversal vulnerabilities in nweb2fax 0.2.7 and earlier allow remote attackers to read arbitrary file...
CVE-2008-6667A+ PHP Scripts News Management System (NMS) allows remote attackers to bypass authentication and gain administrator priv...
CVE-2008-6666Multiple cross-site scripting (XSS) vulnerabilities in Kronos webTA allow remote attackers to inject arbitrary web scrip...
CVE-2008-6665change.php in Ananta CMS 1.0b5, with magic_quotes_gpc disabled, allows remote attackers to gain administrator privileges...
CVE-2008-6664action.php in SH-News 3.0 allows remote attackers to bypass authentication and gain administrator privileges by setting ...
CVE-2008-6663SQL injection vulnerability in profile.php in PHPAuctions.info PHPAuctions (aka PHPAuctionSystem) allows remote attacker...
CVE-2008-6662AVG Anti-Virus for Linux 7.5.51, and possibly earlier, allows remote attackers to cause a denial of service (segmentatio...
CVE-2008-6661Multiple integer overflows in the scanning engine in Bitdefender for Linux 7.60825 and earlier allow remote attackers to...
CVE-2008-6660Unrestricted file upload vulnerability in bigdump.php in Alexey Ozerov BigDump 0.29b allows remote attackers to execute ...
CVE-2008-6659Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.0 before 1.0.15 and 1.1 before 1.1.7 all...
CVE-2008-6658Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.0 before 1.0.15 and 1.1 before 1.1.7 all...
CVE-2008-6657Cross-site request forgery (CSRF) vulnerability in index.php in Simple Machines Forum (SMF) 1.0 before 1.0.15 and 1.1 be...
CVE-2008-6656Multiple SQL injection vulnerabilities in Open Auto Classifieds 1.4.3b allow remote attackers to execute arbitrary SQL c...
CVE-2008-6655Multiple cross-site scripting (XSS) vulnerabilities in GEDCOM_TO_MYSQL 2 allow remote attackers to inject arbitrary web ...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now