2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-6170 | — | — | 1.6% | Feb 19, 2009 | Cross-site scripting (XSS) vulnerability in Drupal 5.x before 5.12 and 6.x before 6.6 allows remote authenticated users ... |
| CVE-2008-6169 | — | — | 0.6% | Feb 19, 2009 | Cross-site request forgery (CSRF) vulnerability in the Localization client 5.x before 5.x-1.1 and 6.x before 6.x-1.6 and... |
| CVE-2008-6168 | — | — | 1.4% | Feb 19, 2009 | Cross-site scripting (XSS) vulnerability in search.php in miniPortail 2.2 and earlier allows remote attackers to inject ... |
| CVE-2008-6167 | — | — | 2.3% | Feb 19, 2009 | Directory traversal vulnerability in search.php in miniPortail 2.2 and earlier allows remote attackers to include and ex... |
| CVE-2008-6166 | — | — | 1.0% | Feb 19, 2009 | SQL injection vulnerability in the KBase (com_kbase) 1.2 component for Joomla! allows remote attackers to execute arbitr... |
| CVE-2008-6165 | — | — | 0.9% | Feb 19, 2009 | SQL injection vulnerability in gestion.php in CSPartner 0.1, when magic_quotes_gpc is disabled, allows remote attackers ... |
| CVE-2008-6161 | — | — | 1.0% | Feb 18, 2009 | Cross-site scripting (XSS) vulnerability in WOW Raid Manager (WRM) before 3.5.1 allows remote attackers to inject arbitr... |
| CVE-2008-6160 | — | — | 1.9% | Feb 18, 2009 | Semantically-Interconnected Online Communities (SIOC) 5.x before 5.x-1.2 and 6.x before 6.x-1.1, a module for Drupal, do... |
| CVE-2008-6159 | — | — | 1.3% | Feb 18, 2009 | Content Management Made Easy (CMME) 1.19 allows remote attackers to obtain system information via a direct request to in... |
| CVE-2008-6158 | — | — | 2.9% | Feb 17, 2009 | Multiple unspecified vulnerabilities in the admin backend in w3b>cms (aka w3blabor CMS) before 3.2.0 have unknown impact... |
| CVE-2008-6157 | HIGH | 7.5 | 3.0% | Feb 17, 2009 | SepCity Classified Ads stores the admin password in cleartext in data/classifieds.mdb, which allows context-dependent at... |
| CVE-2008-4285 | — | — | 1.2% | Feb 17, 2009 | Unspecified vulnerability in the Performance Monitoring Infrastructure (PMI) feature in the Servlet Engine/Web Container... |
| CVE-2008-6156 | — | — | 0.9% | Feb 16, 2009 | SQL injection vulnerability in editCampaign.php in AdMan 1.1.20070907 allows remote authenticated users to execute arbit... |
| CVE-2008-6155 | — | — | 0.9% | Feb 16, 2009 | SQL injection vulnerability in index.php in Hispah Text Links Ads 1.1 allows remote attackers to execute arbitrary SQL c... |
| CVE-2008-6154 | — | — | 1.0% | Feb 16, 2009 | SQL injection vulnerability in index.php in Hispah Text Links Ads 1.1 allows remote attackers to execute arbitrary SQL c... |
| CVE-2008-6153 | — | — | 1.0% | Feb 16, 2009 | SQL injection vulnerability in Photo.asp in Jay Patel Pixel8 Web Photo Album 3.0 allows remote attackers to execute arbi... |
| CVE-2008-6152 | — | — | 1.0% | Feb 16, 2009 | SQL injection vulnerability in deptdisplay.asp in SepCity Faculty Portal allows remote attackers to execute arbitrary SQ... |
| CVE-2008-6151 | — | — | 1.0% | Feb 16, 2009 | SQL injection vulnerability in shpdetails.asp in SepCity Shopping Mall allows remote attackers to execute arbitrary SQL ... |
| CVE-2008-6150 | — | — | 1.0% | Feb 16, 2009 | SQL injection vulnerability in classdis.asp in SepCity Classified Ads allows remote attackers to execute arbitrary SQL c... |
| CVE-2008-6149 | — | — | 1.2% | Feb 16, 2009 | SQL injection vulnerability in the mDigg (com_mdigg) component 2.2.8 for Joomla! allows remote attackers to execute arbi... |
| CVE-2008-6148 | — | — | 1.0% | Feb 16, 2009 | SQL injection vulnerability in the Live Ticker (com_liveticker) module 1.0 for Joomla! allows remote attackers to execut... |
| CVE-2008-6147 | — | — | 2.2% | Feb 16, 2009 | ForumApp 3.3 stores sensitive information under the web root with insufficient access control, which allows remote attac... |
| CVE-2008-6146 | — | — | 0.9% | Feb 16, 2009 | SQL injection vulnerability in pm.php in DeluxeBB 1.2 and earlier, when magic_quotes_gpc is disabled, allows remote atta... |
| CVE-2008-6145 | — | — | 1.1% | Feb 16, 2009 | Multiple SQL injection vulnerabilities in the WEC Discussion Forum (wec_discussion) extension 1.7.0 and earlier for TYPO... |
| CVE-2008-6144 | — | — | 1.0% | Feb 16, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the WEC Discussion Forum (wec_discussion) extension 1.7.0 and ear... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now