2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-6679——Buffer overflow in the BaseFont writer module in Ghostscript 8.62, and possibly other versions, allows remote attackers ...
CVE-2008-6678——SQL injection vulnerability in asp/includes/contact.asp in QuickerSite 1.8.5 allows remote attackers to execute arbitrar...
CVE-2008-6677——Unrestricted file upload vulnerability in fckeditor251/editor/filemanager/connectors/asp/upload.asp in QuickerSite 1.8.5...
CVE-2008-6676——QuickerSite 1.8.5 allows remote attackers to obtain sensitive information via a request to showThumb.aspx without any pa...
CVE-2008-6675——Multiple cross-site scripting (XSS) vulnerabilities in QuickerSite 1.8.5 allow remote attackers to inject arbitrary web ...
CVE-2008-6674——mailPage.asp in QuickerSite 1.8.5 allows remote attackers to flood e-mail accounts with messages via a large number of r...
CVE-2008-6673——asp/bs_login.asp in QuickerSite 1.8.5 does not properly restrict access to administrative functionality, which allows re...
CVE-2008-6672——Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service ("runtime error") via a crafted j...
CVE-2008-6671——Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service (infinite loop and hang) via a cr...
CVE-2008-6670——Integer overflow in Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service (crash) via a...
CVE-2008-6669——viewrq.php in nweb2fax 0.2.7 and earlier allows remote attackers to execute arbitrary code via shell metacharacters in t...
CVE-2008-6668——Multiple directory traversal vulnerabilities in nweb2fax 0.2.7 and earlier allow remote attackers to read arbitrary file...
CVE-2008-6667——A+ PHP Scripts News Management System (NMS) allows remote attackers to bypass authentication and gain administrator priv...
CVE-2008-6666——Multiple cross-site scripting (XSS) vulnerabilities in Kronos webTA allow remote attackers to inject arbitrary web scrip...
CVE-2008-6665——change.php in Ananta CMS 1.0b5, with magic_quotes_gpc disabled, allows remote attackers to gain administrator privileges...
CVE-2008-6664——action.php in SH-News 3.0 allows remote attackers to bypass authentication and gain administrator privileges by setting ...
CVE-2008-6663——SQL injection vulnerability in profile.php in PHPAuctions.info PHPAuctions (aka PHPAuctionSystem) allows remote attacker...
CVE-2008-6662——AVG Anti-Virus for Linux 7.5.51, and possibly earlier, allows remote attackers to cause a denial of service (segmentatio...
CVE-2008-6661——Multiple integer overflows in the scanning engine in Bitdefender for Linux 7.60825 and earlier allow remote attackers to...
CVE-2008-6660——Unrestricted file upload vulnerability in bigdump.php in Alexey Ozerov BigDump 0.29b allows remote attackers to execute ...
CVE-2008-6659——Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.0 before 1.0.15 and 1.1 before 1.1.7 all...
CVE-2008-6658——Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.0 before 1.0.15 and 1.1 before 1.1.7 all...
CVE-2008-6657——Cross-site request forgery (CSRF) vulnerability in index.php in Simple Machines Forum (SMF) 1.0 before 1.0.15 and 1.1 be...
CVE-2008-6656——Multiple SQL injection vulnerabilities in Open Auto Classifieds 1.4.3b allow remote attackers to execute arbitrary SQL c...
CVE-2008-6655——Multiple cross-site scripting (XSS) vulnerabilities in GEDCOM_TO_MYSQL 2 allow remote attackers to inject arbitrary web ...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now