2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-6319——SQL injection vulnerability in calendarevent.cfm in CF_Calendar allows remote attackers to execute arbitrary SQL command...
CVE-2008-6318——PHP remote file inclusion vulnerability in _conf/_php-core/common-tpl-vars.php in PHPmyGallery 1.5 beta allows remote at...
CVE-2008-6317——Directory traversal vulnerability in _conf/_php-core/common-tpl-vars.php in PHPmyGallery 1.5 beta allows remote attacker...
CVE-2008-6316——Directory traversal vulnerability in _conf/core/common-tpl-vars.php in PHPmyGallery 1.0 beta2 allows remote attackers to...
CVE-2008-6315——PHP remote file inclusion vulnerability in _conf/core/common-tpl-vars.php in PHPmyGallery 1.0 beta2 allows remote attack...
CVE-2008-6314——SQL injection vulnerability in tag_board.php in the Tag Board module 4.0 and earlier for phpBB allows remote attackers t...
CVE-2008-6313——Directory traversal vulnerability in addedit-render.php in phpAddEdit 1.3, when magic_quotes_gpc is disabled, allows rem...
CVE-2008-6312——SQL injection vulnerability in index.php in ProQuiz 1.0 allows remote attackers to execute arbitrary SQL commands via th...
CVE-2008-6311——SQL injection vulnerability in view.php in Butterfly Organizer 2.0.1 allows remote attackers to execute arbitrary SQL co...
CVE-2008-6310——SQL injection vulnerability in index.php in W3matter RevSense 1.0 allows remote attackers to execute arbitrary SQL comma...
CVE-2008-6309——SQL injection vulnerability in index.php in W3matter AskPert allows remote attackers to execute arbitrary SQL commands v...
CVE-2008-6308——Multiple directory traversal vulnerabilities in Private Messaging System (PMS) 1.2.3 and earlier for PunBB allow remote ...
CVE-2008-6307——E-topbiz Link Back Checker 1 allows remote attackers to bypass authentication and gain administrative access by setting ...
CVE-2008-6306——Cross-site scripting (XSS) vulnerability in signinform.php in Softbiz Classifieds Script allows remote attackers to inje...
CVE-2008-6305——PHP remote file inclusion vulnerability in init.php in Free Directory Script 1.1.1, when register_globals is enabled, al...
CVE-2008-6304——SQL injection vulnerability in xt:Commerce before 3.0.4 Sp2.1, when magic_quotes_gpc is enabled and the SEO URLs are act...
CVE-2008-6303——SQL injection vulnerability in tourview.php in ToursManager allows remote attackers to execute arbitrary SQL commands vi...
CVE-2008-6302——TurnkeyForms Local Classifieds allows remote attackers to bypass authentication and gain administrative access via a dir...
CVE-2008-4308——The doRead method in Apache Tomcat 4.1.32 through 4.1.34 and 5.5.10 through 5.5.20 does not return a -1 to indicate when...
CVE-2008-6301——SQL injection vulnerability in shoutbox_view.php in the Small ShoutBox module 1.4 for phpBB allows remote attackers to e...
CVE-2008-6300——Galatolo WebManager 1.3a allows remote attackers to bypass authentication and gain administrative access by setting the ...
CVE-2008-6299——Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5.7 and earlier allow remote authenticated users with c...
CVE-2008-6298——Unspecified vulnerability in sISAPILocation before 1.0.2.2 allows remote attackers to bypass intended access restriction...
CVE-2008-6297——Cross-site scripting (XSS) vulnerability in order.php in DHCart allows remote attackers to inject arbitrary web script o...
CVE-2008-6296——admin.php in Maran PHP Shop allows remote attackers to bypass authentication and gain administrative access by setting t...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now