2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-6086 | — | — | 1.1% | Feb 6, 2009 | SQL injection vulnerability in album.php in Camera Life 2.6.2b4 allows remote attackers to execute arbitrary SQL command... |
| CVE-2008-6085 | — | — | 5.5% | Feb 6, 2009 | Integer overflow in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 200... |
| CVE-2008-6084 | — | — | 2.2% | Feb 6, 2009 | Unrestricted file upload vulnerability in pages/download.php in Iamma Simple Gallery 1.0 and 2.0 allows remote attackers... |
| CVE-2008-6083 | — | — | 2.7% | Feb 6, 2009 | Directory traversal vulnerability in header.php in TXTshop beta 1.0 allows remote attackers to include and execute arbit... |
| CVE-2008-6082 | — | — | 44.6% | Feb 6, 2009 | Titan FTP Server 6.26 build 630 allows remote attackers to cause a denial of service (CPU consumption) via the SITE WHO ... |
| CVE-2008-6081 | — | — | 1.1% | Feb 6, 2009 | SQL injection vulnerability in contact.php in Simple Customer 1.2 allows remote attackers to execute arbitrary SQL comma... |
| CVE-2008-6080 | — | — | 10.6% | Feb 6, 2009 | Directory traversal vulnerability in download.php in the ionFiles (com_ionfiles) 4.4.2 component for Joomla! allows remo... |
| CVE-2008-6079 | — | — | 2.8% | Feb 6, 2009 | imlib2 before 1.4.2 allows context-dependent attackers to have an unspecified impact via a crafted (1) ARGB, (2) BMP, (3... |
| CVE-2008-6078 | — | — | 1.0% | Feb 6, 2009 | SQL injection vulnerability in open.php in the Private Messaging (com_privmsg) component for Limbo CMS allows remote att... |
| CVE-2008-6077 | — | — | 0.9% | Feb 6, 2009 | SQL injection vulnerability in loudblog/ajax.php in LoudBlog 0.8.0a and earlier allows remote authenticated users to exe... |
| CVE-2008-6076 | — | — | 1.0% | Feb 6, 2009 | SQL injection vulnerability in the Daily Message (com_dailymessage) 1.0.3 component for Joomla! allows remote attackers ... |
| CVE-2008-6075 | — | — | 1.0% | Feb 6, 2009 | SQL injection vulnerability in aspkat.asp in Bahar Download Script 2.0 allows remote attackers to execute arbitrary SQL ... |
| CVE-2008-6074 | — | — | 2.0% | Feb 6, 2009 | Directory traversal vulnerability in frame.php in phpcrs 2.06 and earlier, when magic_quotes_gpc is disabled, allows rem... |
| CVE-2008-6067 | — | — | — | Feb 5, 2009 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-5838. Reason: This candidate is a duplicate of... |
| CVE-2008-6066 | — | — | 2.5% | Feb 5, 2009 | Multiple PHP remote file inclusion vulnerabilities in Meet#Web 0.8 allow remote attackers to execute arbitrary PHP code ... |
| CVE-2008-6065 | — | — | 2.2% | Feb 5, 2009 | Oracle Database Server 10.1, 10.2, and 11g grants directory WRITE permissions for arbitrary pathnames that are aliased i... |
| CVE-2008-6064 | — | — | 0.9% | Feb 5, 2009 | Multiple SQL injection vulnerabilities in DomPHP 0.81 allow remote attackers to execute arbitrary SQL commands via the c... |
| CVE-2008-6063 | — | — | 10.3% | Feb 5, 2009 | Microsoft Word 2007, when the "Save as PDF" add-on is enabled, places an absolute pathname in the Subject field during a... |
| CVE-2008-6062 | — | — | 1.7% | Feb 5, 2009 | Cross-site scripting (XSS) vulnerability in ActionScript in arbitrary Shockwave Flash (SWF) files created by Adobe Dream... |
| CVE-2008-6061 | — | — | 4.1% | Feb 5, 2009 | Cross-site scripting (XSS) vulnerability in ActionScript in arbitrary Shockwave Flash (SWF) controller files created by ... |
| CVE-2008-6060 | — | — | 2.1% | Feb 5, 2009 | Cross-site scripting (XSS) vulnerability in ActionScript in arbitrary Shockwave Flash (SWF) files created by InfoSoft Fu... |
| CVE-2008-6059 | — | — | 1.9% | Feb 5, 2009 | xml/XMLHttpRequest.cpp in WebCore in WebKit before r38566 does not properly restrict access from web pages to the (1) Se... |
| CVE-2008-6058 | — | — | 1.4% | Feb 5, 2009 | Syslserve 1.058 and earlier, and probably 1.059, allows remote attackers to cause a denial of service (hang) via a craft... |
| CVE-2008-4419 | — | — | 3.5% | Feb 5, 2009 | Directory traversal vulnerability in the HP JetDirect web administration interface in the HP-ChaiSOE 1.0 embedded web se... |
| CVE-2008-6057 | — | — | 2.2% | Feb 4, 2009 | Doug Luxem Liberum Help Desk 0.97.3 stores db/helpdesk2000.mdb under the web root with insufficient access control, whic... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now