2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-6387——Quick Tree View .NET 3.1 stores sensitive information under the web root with insufficient access control, which allows ...
CVE-2008-6386——Cross-site scripting (XSS) vulnerability in showads.php in Z1Exchange 1.0 allows remote attackers to inject arbitrary we...
CVE-2008-6385——Cross-site scripting (XSS) vulnerability in index.php in W3matter RevSense 1.0 allows remote attackers to inject arbitra...
CVE-2008-6384——Multiple cross-site request forgery (CSRF) vulnerabilities in Comment Mail 5.x before 5.x-1.1, a module for Drupal, allo...
CVE-2008-6383——SQL injection vulnerability in SpeedTech Organization and Resource Manager (Storm) 5.x before 5.x-1.14 and 6.x before 6....
CVE-2008-6382——ASP Portal 3.2.5 stores sensitive information under the web root with insufficient access control, which allows remote a...
CVE-2008-6381——SQL injection vulnerability in modules/adresses/viewcat.php in bcoos 1.0.13, and possibly earlier, allows remote authent...
CVE-2008-6380——SQL injection vulnerability in default.aspx in Active Web Helpdesk 2.0 allows remote attackers to execute arbitrary SQL ...
CVE-2008-6379——SQL injection vulnerability in pics_pre.asp in Gallery MX 2.0.0 allows remote attackers to execute arbitrary SQL command...
CVE-2008-6378——SQL injection vulnerability in calendar_Eventupdate.asp in Calendar Mx Professional 2.0.0 allows remote attackers to exe...
CVE-2008-6377——PHP remote file inclusion vulnerability in include/global.php in Multi SEO phpBB 1.1.0 allows remote attackers to execut...
CVE-2008-6376——SQL injection vulnerability in main.asp in Jbook allows remote attackers to execute arbitrary SQL commands via the passw...
CVE-2008-6375——JBook stores sensitive information under the web root with insufficient access control, which allows remote attackers to...
CVE-2008-6374——CodefixerSoftware MailingListPro Free Edition stores sensitive information under the web root with insufficient access c...
CVE-2008-6373——Unspecified vulnerability in Nagios before 3.0.6 has unspecified impact and remote attack vectors related to CGI program...
CVE-2008-6372——SQL injection vulnerability in default.asp in Ocean12 FAQ Manager Pro 1.0 allows remote attackers to execute arbitrary S...
CVE-2008-6371——SQL injection vulnerability in login.asp in Ocean12 Membership Manager Pro allows remote attackers to execute arbitrary ...
CVE-2008-6370——Cross-site scripting (XSS) vulnerability in default.asp in Ocean12 Contact Manager Pro 1.02 allows remote attackers to i...
CVE-2008-6369——SQL injection vulnerability in default.asp in Ocean12 Contact Manager Pro 1.02 allows remote attackers to execute arbitr...
CVE-2008-6368——SQL injection vulnerability in index.php in Chipmunk Guestbook 1.4m allows remote attackers to execute arbitrary SQL com...
CVE-2008-6367——Unrestricted file upload vulnerability in Photos/create_album.php in Social Groupie allows remote authenticated users to...
CVE-2008-6366——SQL injection vulnerability in logon.jsp in Ad Server Solutions Affiliate Software Java 4.0 allows remote attackers to e...
CVE-2008-6365——SQL injection vulnerability in logon.jsp in Ad Server Solutions Ad Management Software Java allows remote attackers to e...
CVE-2008-6364——SQL injection vulnerability in logon_process.jsp in Ad Server Solutions Banner Exchange Solution Java allows remote atta...
CVE-2008-6363——Stack-based buffer overflow in DesignWorks Professional 4.3.1 and 5.0.7 allows remote attackers to execute arbitrary cod...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now