2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-6557 | — | — | 3.2% | Mar 30, 2009 | cgi-bin/webutil.pl in The Puppet Master WebUtil 2.7 allows remote attackers to execute arbitrary commands via shell meta... |
| CVE-2008-6556 | — | — | 3.2% | Mar 30, 2009 | cgi-bin/webutil.pl in The Puppet Master WebUtil 2.3 allows remote attackers to execute arbitrary commands via shell meta... |
| CVE-2008-6555 | — | — | 4.5% | Mar 30, 2009 | cgi-bin/webutil.pl in The Puppet Master WebUtil allows remote attackers to execute arbitrary commands via shell metachar... |
| CVE-2008-6554 | — | — | 3.6% | Mar 30, 2009 | cgi-bin/script in Aztech ADSL2/2+ 4-port router 3.7.0 build 070426 allows remote attackers to execute arbitrary commands... |
| CVE-2008-6553 | — | — | 2.5% | Mar 30, 2009 | microcms-admin-home.php in Implied by Design Micro CMS (Micro-CMS) 3.5 (aka 0.3.5) does not require authentication as an... |
| CVE-2008-6552 | — | — | 0.4% | Mar 30, 2009 | Red Hat Cluster Project 2.x allows local users to modify or overwrite arbitrary files via symlink attacks on files in /t... |
| CVE-2008-6551 | — | — | 1.9% | Mar 30, 2009 | Multiple directory traversal vulnerabilities in e-Vision CMS 2.0.2 and earlier, when magic_quotes_gpc is disabled, allow... |
| CVE-2008-6550 | — | — | 1.4% | Mar 30, 2009 | Cross-site scripting (XSS) vulnerability in glossaire.php in Glossaire 2.0 allows remote attackers to inject arbitrary w... |
| CVE-2008-6549 | — | — | 1.5% | Mar 30, 2009 | The password_checker function in config/multiconfig.py in MoinMoin 1.6.1 uses the cracklib and python-crack features eve... |
| CVE-2008-6548 | — | — | 1.0% | Mar 30, 2009 | The rst parser (parser/text_rst.py) in MoinMoin 1.6.1 does not check the ACL of an included page, which allows attackers... |
| CVE-2008-6547 | — | — | 1.5% | Mar 30, 2009 | schema.py in FormEncode for Python (python-formencode) 1.0 does not apply the chained_validators feature, which allows a... |
| CVE-2008-6546 | — | — | 1.2% | Mar 30, 2009 | Unspecified vulnerability in phpns before 2.1.3 has unknown impact and attack vectors related to "activation permissions... |
| CVE-2008-6545 | — | — | 2.3% | Mar 30, 2009 | PHP remote file inclusion vulnerability in news/include/createdb.php in Web Server Creator Web Portal 0.1 allows remote ... |
| CVE-2008-6544 | — | — | 2.9% | Mar 30, 2009 | Multiple PHP remote file inclusion vulnerabilities in Simple Machines Forum (SMF) 1.1.4 allow remote attackers to execut... |
| CVE-2008-6543 | — | — | 2.5% | Mar 30, 2009 | Multiple PHP remote file inclusion vulnerabilities in ComScripts TEAM Quick Classifieds 1.0 via the DOCUMENT_ROOT parame... |
| CVE-2008-6542 | — | — | 1.6% | Mar 30, 2009 | Unspecified vulnerability in the Skin Manager in DotNetNuke before 4.8.2 allows remote authenticated administrators to p... |
| CVE-2008-6541 | — | — | 1.0% | Mar 30, 2009 | Unrestricted file upload vulnerability in the file manager module in DotNetNuke before 4.8.2 allows remote administrator... |
| CVE-2008-6540 | — | — | 2.5% | Mar 30, 2009 | DotNetNuke before 4.8.2, during installation or upgrade, does not warn the administrator when the default (1) Validation... |
| CVE-2008-6539 | — | — | 2.2% | Mar 30, 2009 | Static code injection vulnerability in user/settings/ in DeStar 0.2.2-5 allows remote authenticated users to add arbitra... |
| CVE-2008-6538 | — | — | 2.5% | Mar 30, 2009 | DeStar 0.2.2-5 allows remote attackers to add arbitrary users via a direct request to config/add/CfgOptUser. |
| CVE-2008-6537 | — | — | 6.3% | Mar 30, 2009 | LightNEasy/lightneasy.php in LightNEasy No database version 1.2 allows remote attackers to obtain the hash of the admini... |
| CVE-2008-6536 | — | — | 2.8% | Mar 30, 2009 | Unspecified vulnerability in 7-zip before 4.5.7 has unknown impact and remote attack vectors, as demonstrated by the PRO... |
| CVE-2008-4312 | — | — | — | Mar 29, 2009 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2008-6535 | — | — | 6.3% | Mar 26, 2009 | admin/settings.php in PayPal eStores allows remote attackers to bypass intended access restrictions and change the admin... |
| CVE-2008-6534 | — | — | 4.1% | Mar 26, 2009 | Incomplete blacklist vulnerability in NULL FTP Server Free and Pro 1.1.0.7 allows remote authenticated users to execute ... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now