2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-6549The password_checker function in config/multiconfig.py in MoinMoin 1.6.1 uses the cracklib and python-crack features eve...
CVE-2008-6548The rst parser (parser/text_rst.py) in MoinMoin 1.6.1 does not check the ACL of an included page, which allows attackers...
CVE-2008-6547schema.py in FormEncode for Python (python-formencode) 1.0 does not apply the chained_validators feature, which allows a...
CVE-2008-6546Unspecified vulnerability in phpns before 2.1.3 has unknown impact and attack vectors related to "activation permissions...
CVE-2008-6545PHP remote file inclusion vulnerability in news/include/createdb.php in Web Server Creator Web Portal 0.1 allows remote ...
CVE-2008-6544Multiple PHP remote file inclusion vulnerabilities in Simple Machines Forum (SMF) 1.1.4 allow remote attackers to execut...
CVE-2008-6543Multiple PHP remote file inclusion vulnerabilities in ComScripts TEAM Quick Classifieds 1.0 via the DOCUMENT_ROOT parame...
CVE-2008-6542Unspecified vulnerability in the Skin Manager in DotNetNuke before 4.8.2 allows remote authenticated administrators to p...
CVE-2008-6541Unrestricted file upload vulnerability in the file manager module in DotNetNuke before 4.8.2 allows remote administrator...
CVE-2008-6540DotNetNuke before 4.8.2, during installation or upgrade, does not warn the administrator when the default (1) Validation...
CVE-2008-6539Static code injection vulnerability in user/settings/ in DeStar 0.2.2-5 allows remote authenticated users to add arbitra...
CVE-2008-6538DeStar 0.2.2-5 allows remote attackers to add arbitrary users via a direct request to config/add/CfgOptUser.
CVE-2008-6537LightNEasy/lightneasy.php in LightNEasy No database version 1.2 allows remote attackers to obtain the hash of the admini...
CVE-2008-6536Unspecified vulnerability in 7-zip before 4.5.7 has unknown impact and remote attack vectors, as demonstrated by the PRO...
CVE-2008-4312Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ...
CVE-2008-6535admin/settings.php in PayPal eStores allows remote attackers to bypass intended access restrictions and change the admin...
CVE-2008-6534Incomplete blacklist vulnerability in NULL FTP Server Free and Pro 1.1.0.7 allows remote authenticated users to execute ...
CVE-2008-6533Drupal 5.x before 5.13 and 6.x before 6.7 does not delete all related content when an input format is deleted, which pre...
CVE-2008-6532Multiple cross-site request forgery (CSRF) vulnerabilities in the update feature in Drupal 5.x before 5.13 and 6.x befor...
CVE-2008-6531The WebWork 1 web application framework in Atlassian JIRA before 3.13.2 allows remote attackers to invoke exposed public...
CVE-2008-6530Unrestricted file upload vulnerability in editimage.php in eZoneScripts Living Local 1.1 allows remote authenticated adm...
CVE-2008-6529Cross-site scripting (XSS) vulnerability in listtest.php in eZoneScripts Living Local 1.1 allows remote attackers to inj...
CVE-2008-6528NTFS TmaxSoft JEUS 5 before Fix 26 allows remote attackers to read the source code for scripts by appending ::$DATA to t...
CVE-2008-5020Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-0017. Reason: This candidate is a reservation ...
CVE-2008-4317Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-5019. Reason: This candidate is a reservation ...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now