2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-6510Cross-site scripting (XSS) vulnerability in login.jsp in the Admin Console in Openfire 3.6.0a and earlier allows remote ...
CVE-2008-6509SQL injection vulnerability in CallLogDAO in SIP Plugin in Openfire 3.6.0a and earlier allows remote attackers to execut...
CVE-2008-6508Directory traversal vulnerability in the AuthCheck filter in the Admin Console in Openfire 3.6.0a and earlier allows rem...
CVE-2008-6507Unspecified vulnerability in phpBB before 3.0.4 allows attackers to obtain sensitive information via unknown vectors rel...
CVE-2008-6506Unspecified vulnerability in phpBB before 3.0.4 allows attackers to bypass intended access restrictions and activate de-...
CVE-2008-6505Multiple directory traversal vulnerabilities in Apache Struts 2.0.x before 2.0.12 and 2.1.x before 2.1.3 allow remote at...
CVE-2008-6504ParametersInterceptor in OpenSymphony XWork 2.0.x before 2.0.6 and 2.1.x before 2.1.2, as used in Apache Struts and othe...
CVE-2008-6503Multiple cross-site scripting (XSS) vulnerabilities in PrestaShop 1.1.0.3 allow remote attackers to inject arbitrary web...
CVE-2008-6502Directory traversal vulnerability in Pro Chat Rooms 3.0.2 allows remote authenticated users to select an arbitrary local...
CVE-2008-6501Cross-site scripting (XSS) vulnerability in profiles/index.php in Pro Chat Rooms 3.0.2 allows remote attackers to inject...
CVE-2008-6500Cross-site scripting (XSS) vulnerability in CodeToad ASP Shopping Cart Script allows remote attackers to inject arbitrar...
CVE-2008-6499security/xamppsecurity.php in XAMPP 1.6.8 performs an extract operation on the SERVER superglobal array, which allows re...
CVE-2008-6498Cross-site request forgery (CSRF) vulnerability in security/xamppsecurity.php in XAMPP 1.6.8 allows remote attackers to ...
CVE-2008-6497The Neostrada Livebox ADSL Router allows remote attackers to cause a denial of service (network outage) via multiple HTT...
CVE-2008-6496Insecure method vulnerability in the VSPDFEditorX.VSPDFEdit ActiveX control in VSPDFEditorX.ocx 1.0.200.0 in VISAGESOFT ...
CVE-2008-6495Cross-site scripting (XSS) vulnerability in index.php in Fritz Berger yet another php photo album - next generation (yap...
CVE-2008-6494ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remot...
CVE-2008-6493Easy Content Management Publishing stores sensitive information under the web root with insufficient access control, whi...
CVE-2008-6492Unrestricted file upload vulnerability in process.php in Tizag Countdown Creator 3 allows remote attackers to execute ar...
CVE-2008-6491PHP remote file inclusion vulnerability in connexion.php in PHPGKit 0.9 allows remote attackers to execute arbitrary PHP...
CVE-2008-6490function/update_xml.php in FLABER 1.1 and earlier allows remote attackers to overwrite arbitrary files by specifying the...
CVE-2008-6489SQL injection vulnerability in MyAlbum component (com_myalbum) 1.0 for Joomla! allows remote attackers to execute arbitr...
CVE-2008-6488SQL injection vulnerability in index.php in SoftComplex PHP Image Gallery 1.0 allows remote attackers to execute arbitra...
CVE-2008-6487Multiple SQL injection vulnerabilities in login.asp in Digiappz DigiAffiliate 1.4 and earlier allow remote attackers to ...
CVE-2008-6486PHP remote file inclusion vulnerability in slideshow_uploadvideo.content.php in SharedLog, when register_globals is enab...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now