2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-6118win/content/upload.php in Goople CMS 1.7 allows remote attackers to bypass authentication and gain administrative access...
CVE-2008-6117SQL injection vulnerability in homepage.php in PG Job Site Pro allows remote attackers to execute arbitrary SQL commands...
CVE-2008-6116SQL injection vulnerability in the EXtrovert Software Thyme (com_thyme) 1.0 component for Joomla! allows remote attacker...
CVE-2008-6115SQL injection vulnerability in directory.php in Prozilla Hosting Index allows remote attackers to execute arbitrary SQL ...
CVE-2008-6114SQL injection vulnerability in product_details.php in the Mytipper Zogo-shop 1.15.4 plugin for e107 allows remote attack...
CVE-2008-6113Cross-site scripting (XSS) vulnerability in SemanticScuttle before 0.90 allows remote attackers to inject arbitrary web ...
CVE-2008-6112Multiple directory traversal vulnerabilities in Ez Ringtone Manager allow remote attackers to read arbitrary files via a...
CVE-2008-6111SQL injection vulnerability in blog.php in NetArt Media Vlog System 1.1 allows remote attackers to execute arbitrary SQL...
CVE-2008-6110Unspecified vulnerability in SemanticScuttle before 0.90 has unknown impact and attack vectors related to improper valid...
CVE-2008-6109Robin Rawson-Tetley Animal Shelter Manager (ASM) before 2.2.2 does not properly enforce the privileges of user accounts,...
CVE-2008-4284Open redirect vulnerability in the ibm_security_logout servlet in IBM WebSphere Application Server (WAS) 5.1.1.19 and ea...
CVE-2008-4283CRLF injection vulnerability in the WebContainer component in IBM WebSphere Application Server (WAS) 5.1.1.19 and earlie...
CVE-2008-6108Cross-site scripting (XSS) vulnerability in result.php in Galatolo WebManager (GWM) 1.0 allows remote attackers to injec...
CVE-2008-6107The (1) sys32_mremap function in arch/sparc64/kernel/sys_sparc32.c, the (2) sparc_mmap_check function in arch/sparc/kern...
CVE-2008-6106Cross-site request forgery (CSRF) vulnerability in IBM Workplace for Business Controls and Reporting 2.x and IBM Workpla...
CVE-2008-6105Cross-site scripting (XSS) vulnerability in IBM Workplace for Business Controls and Reporting 2.x and IBM Workplace Web ...
CVE-2008-6104SQL injection vulnerability in A4Desk PHP Event Calendar allows remote attackers to execute arbitrary SQL commands via t...
CVE-2008-6103PHP remote file inclusion vulnerability in index.php in A4Desk Event Calendar, when magic_quotes_gpc is disabled, allows...
CVE-2008-6102SQL injection vulnerability in ratelink.php in Link Trader Script allows remote attackers to execute arbitrary SQL comma...
CVE-2008-6101SQL injection vulnerability in click.php in Adult Banner Exchange Website allows remote attackers to execute arbitrary S...
CVE-2008-6100Multiple SQL injection vulnerabilities in Discussion Forums 2k 3.3, when magic_quotes_gpc is disabled, allow remote atta...
CVE-2008-6099PHP remote file inclusion vulnerability in index.php in RPortal 1.1 and earlier allows remote attackers to execute arbit...
CVE-2008-6073StorageCrypt 2.0.1 does not properly encrypt disks, which allows local users to obtain sensitive information via unspeci...
CVE-2008-6072Multiple unspecified vulnerabilities in GraphicsMagick before 1.1.14, and 1.2.x before 1.2.3, allow remote attackers to ...
CVE-2008-6071Heap-based buffer overflow in the DecodeImage function in coders/pict.c in GraphicsMagick before 1.1.14, and 1.2.x befor...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now