2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-6319SQL injection vulnerability in calendarevent.cfm in CF_Calendar allows remote attackers to execute arbitrary SQL command...
CVE-2008-6318PHP remote file inclusion vulnerability in _conf/_php-core/common-tpl-vars.php in PHPmyGallery 1.5 beta allows remote at...
CVE-2008-6317Directory traversal vulnerability in _conf/_php-core/common-tpl-vars.php in PHPmyGallery 1.5 beta allows remote attacker...
CVE-2008-6316Directory traversal vulnerability in _conf/core/common-tpl-vars.php in PHPmyGallery 1.0 beta2 allows remote attackers to...
CVE-2008-6315PHP remote file inclusion vulnerability in _conf/core/common-tpl-vars.php in PHPmyGallery 1.0 beta2 allows remote attack...
CVE-2008-6314SQL injection vulnerability in tag_board.php in the Tag Board module 4.0 and earlier for phpBB allows remote attackers t...
CVE-2008-6313Directory traversal vulnerability in addedit-render.php in phpAddEdit 1.3, when magic_quotes_gpc is disabled, allows rem...
CVE-2008-6312SQL injection vulnerability in index.php in ProQuiz 1.0 allows remote attackers to execute arbitrary SQL commands via th...
CVE-2008-6311SQL injection vulnerability in view.php in Butterfly Organizer 2.0.1 allows remote attackers to execute arbitrary SQL co...
CVE-2008-6310SQL injection vulnerability in index.php in W3matter RevSense 1.0 allows remote attackers to execute arbitrary SQL comma...
CVE-2008-6309SQL injection vulnerability in index.php in W3matter AskPert allows remote attackers to execute arbitrary SQL commands v...
CVE-2008-6308Multiple directory traversal vulnerabilities in Private Messaging System (PMS) 1.2.3 and earlier for PunBB allow remote ...
CVE-2008-6307E-topbiz Link Back Checker 1 allows remote attackers to bypass authentication and gain administrative access by setting ...
CVE-2008-6306Cross-site scripting (XSS) vulnerability in signinform.php in Softbiz Classifieds Script allows remote attackers to inje...
CVE-2008-6305PHP remote file inclusion vulnerability in init.php in Free Directory Script 1.1.1, when register_globals is enabled, al...
CVE-2008-6304SQL injection vulnerability in xt:Commerce before 3.0.4 Sp2.1, when magic_quotes_gpc is enabled and the SEO URLs are act...
CVE-2008-6303SQL injection vulnerability in tourview.php in ToursManager allows remote attackers to execute arbitrary SQL commands vi...
CVE-2008-6302TurnkeyForms Local Classifieds allows remote attackers to bypass authentication and gain administrative access via a dir...
CVE-2008-4308The doRead method in Apache Tomcat 4.1.32 through 4.1.34 and 5.5.10 through 5.5.20 does not return a -1 to indicate when...
CVE-2008-6301SQL injection vulnerability in shoutbox_view.php in the Small ShoutBox module 1.4 for phpBB allows remote attackers to e...
CVE-2008-6300Galatolo WebManager 1.3a allows remote attackers to bypass authentication and gain administrative access by setting the ...
CVE-2008-6299Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5.7 and earlier allow remote authenticated users with c...
CVE-2008-6298Unspecified vulnerability in sISAPILocation before 1.0.2.2 allows remote attackers to bypass intended access restriction...
CVE-2008-6297Cross-site scripting (XSS) vulnerability in order.php in DHCart allows remote attackers to inject arbitrary web script o...
CVE-2008-6296admin.php in Maran PHP Shop allows remote attackers to bypass authentication and gain administrative access by setting t...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now