2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-6412 | — | — | 1.4% | Mar 6, 2009 | Unspecified vulnerability in Vignette Content Management 7.3.0.5, 7.3.1, 7.3.1.1, 7.4, and 7.5 allows "low privileged" u... |
| CVE-2008-6411 | — | — | 2.6% | Mar 6, 2009 | Explay CMS 2.1 and earlier allows remote attackers to bypass authentication and gain administrative access by setting th... |
| CVE-2008-6410 | — | — | 2.3% | Mar 6, 2009 | Directory traversal vulnerability in show.php in ol'bookmarks manager 0.7.5 and earlier allows remote attackers to inclu... |
| CVE-2008-6409 | — | — | 0.9% | Mar 6, 2009 | SQL injection vulnerability in index.php in ol'bookmarks manager 0.7.5 allows remote attackers to execute arbitrary SQL ... |
| CVE-2008-6408 | — | — | 2.3% | Mar 6, 2009 | PHP remote file inclusion vulnerability in frame.php in ol'bookmarks manager 0.7.5 allows remote attackers to execute ar... |
| CVE-2008-6407 | — | — | 2.3% | Mar 6, 2009 | Directory traversal vulnerability in frame.php in ol'bookmarks manager 0.7.5 allows remote attackers to include and exec... |
| CVE-2008-6406 | — | — | 1.5% | Mar 6, 2009 | Cross-site scripting (XSS) vulnerability in admin.php in DataLife Engine (DLE) 7.2 allows remote attackers to inject arb... |
| CVE-2008-6405 | — | — | 1.0% | Mar 6, 2009 | SQL injection vulnerability in showcategory.php in Hotscripts Clone allows remote attackers to execute arbitrary SQL com... |
| CVE-2008-6404 | — | — | 1.4% | Mar 6, 2009 | Cross-site scripting (XSS) vulnerability in add_calendars.php in eXtrovert Software Thyme 1.3 allows remote attackers to... |
| CVE-2008-6403 | — | — | 2.3% | Mar 6, 2009 | PHP remote file inclusion vulnerability in themes/default/include/html/insert.inc.php in OpenRat 0.8-beta4 and earlier a... |
| CVE-2008-6402 | — | — | 2.3% | Mar 6, 2009 | PHP remote file inclusion vulnerability in hu/modules/reg-new/modstart.php in Sofi WebGui 0.6.3 PRE and earlier allows r... |
| CVE-2008-6401 | — | — | 1.0% | Mar 6, 2009 | SQL injection vulnerability in sayfa.php in JETIK-WEB allows remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2008-6400 | — | — | 1.0% | Mar 5, 2009 | Cross-site scripting (XSS) vulnerability in refbase before 0.9.5 allows remote attackers to inject arbitrary web script ... |
| CVE-2008-6399 | — | — | 2.0% | Mar 5, 2009 | Unspecified vulnerability in DotNetNuke 4.5.2 through 4.9 allows remote attackers to "add additional roles to their user... |
| CVE-2008-6398 | — | — | 0.4% | Mar 4, 2009 | sng_regress in SNG 1.0.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/recompiled... |
| CVE-2008-6397 | — | — | 0.3% | Mar 4, 2009 | rlatex in AlcoveBook sgml2x 1.0.0 allows local users to overwrite arbitrary files via a symlink attack on temporary file... |
| CVE-2008-6396 | — | — | 1.5% | Mar 4, 2009 | Cross-site scripting (XSS) vulnerability in account.php in Celerondude Uploader 6.1 allows remote attackers to inject ar... |
| CVE-2008-6395 | — | — | 2.5% | Mar 4, 2009 | The web management interface in 3Com Wireless 8760 Dual Radio 11a/b/g PoE Access Point allows remote attackers to cause ... |
| CVE-2008-6394 | — | — | 1.2% | Mar 4, 2009 | SQL injection vulnerability in core/user.php in CS-Cart 1.3.5 and earlier allows remote attackers to execute arbitrary S... |
| CVE-2008-6393 | — | — | 18.2% | Mar 3, 2009 | PSI Jabber client before 0.12.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitr... |
| CVE-2008-6392 | — | — | 1.0% | Mar 2, 2009 | SQL injection vulnerability in showads.php in Z1Exchange allows remote attackers to execute arbitrary SQL commands via t... |
| CVE-2008-6391 | — | — | 0.9% | Mar 2, 2009 | SQL injection vulnerability in main.asp in Jbook allows remote attackers to execute arbitrary SQL commands via the usern... |
| CVE-2008-6390 | — | — | 1.0% | Mar 2, 2009 | SQL injection vulnerability in login.asp in Ocean12 Membership Manager Pro allows remote attackers to execute arbitrary ... |
| CVE-2008-6389 | — | — | 1.0% | Mar 2, 2009 | SQL injection vulnerability in asadmin/default.asp in Rae Media Contact Management Software SOHO, Standard, and Enterpri... |
| CVE-2008-6388 | — | — | 2.2% | Mar 2, 2009 | Rapid Classified 3.1 and 3.15 stores sensitive information under the web root with insufficient access control, which al... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now