2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-6370——Cross-site scripting (XSS) vulnerability in default.asp in Ocean12 Contact Manager Pro 1.02 allows remote attackers to i...
CVE-2008-6369——SQL injection vulnerability in default.asp in Ocean12 Contact Manager Pro 1.02 allows remote attackers to execute arbitr...
CVE-2008-6368——SQL injection vulnerability in index.php in Chipmunk Guestbook 1.4m allows remote attackers to execute arbitrary SQL com...
CVE-2008-6367——Unrestricted file upload vulnerability in Photos/create_album.php in Social Groupie allows remote authenticated users to...
CVE-2008-6366——SQL injection vulnerability in logon.jsp in Ad Server Solutions Affiliate Software Java 4.0 allows remote attackers to e...
CVE-2008-6365——SQL injection vulnerability in logon.jsp in Ad Server Solutions Ad Management Software Java allows remote attackers to e...
CVE-2008-6364——SQL injection vulnerability in logon_process.jsp in Ad Server Solutions Banner Exchange Solution Java allows remote atta...
CVE-2008-6363——Stack-based buffer overflow in DesignWorks Professional 4.3.1 and 5.0.7 allows remote attackers to execute arbitrary cod...
CVE-2008-6362——SQL injection vulnerability in sitepage.php in Multiple Membership Script 2.5 allows remote attackers to execute arbitra...
CVE-2008-6361——Directory traversal vulnerability in index.php in InSun Feed CMS 1.7.3 19Beta allows remote attackers to include and exe...
CVE-2008-6360——Cross-site scripting (XSS) vulnerability in the userranks feature in modules/system/admin.php in ImpressCMS 1.0.2 final ...
CVE-2008-6359——Cross-site scripting (XSS) vulnerability in index.php in Max's Guestbook allows remote attackers to inject arbitrary web...
CVE-2008-6358——SQL injection vulnerability in group_index.php in Social Groupie allows remote attackers to execute arbitrary SQL comman...
CVE-2008-6357——MyCal Personal Events Calendar stores sensitive information under the web root with insufficient access control, which a...
CVE-2008-6356——evCal Events Calendar stores sensitive information under the web root with insufficient access control, which allows rem...
CVE-2008-6355——The Net Guys ASPired2Protect stores sensitive information under the web root with insufficient access control, which all...
CVE-2008-6354——The Net Guys ASPired2poll stores sensitive information under the web root with insufficient access control, which allows...
CVE-2008-6353——SQL injection vulnerability in index.asp in ASP-CMS 1.0 allows remote attackers to execute arbitrary SQL commands via th...
CVE-2008-6352——SQL injection vulnerability in home.html in Xpoze Pro 4.10 allows remote attackers to execute arbitrary SQL commands via...
CVE-2008-6351——Cross-site scripting (XSS) vulnerability in listtest.php in TurnkeyForms Local Classifieds allows remote attackers to in...
CVE-2008-6350——SQL injection vulnerability in listtest.php in TurnkeyForms Local Classifieds allows remote attackers to execute arbitra...
CVE-2008-6349——SQL injection vulnerability in survey_results_text.php in TurnkeyForms Business Survey Pro 1.0 allows remote attackers t...
CVE-2008-6348——Multiple SQL injection vulnerabilities in DevelopItEasy Photo Gallery 1.2 allow remote attackers to execute arbitrary SQ...
CVE-2008-6347——PHP remote file inclusion vulnerability in lib/onguma.class.php in the Onguma Time Sheet (com_ongumatimesheet20) 2.0 4b ...
CVE-2008-6346——Cross-site scripting (XSS) vulnerability in the DR Wiki (dr_wiki) extension 1.7.1 and earlier for TYPO3 allows remote at...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now