2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-5985 | — | — | 0.4% | Jan 28, 2009 | Untrusted search path vulnerability in the Python interface in Epiphany 2.22.3, and possibly other versions, allows loca... |
| CVE-2008-5984 | — | — | 0.4% | Jan 28, 2009 | Untrusted search path vulnerability in the Python plugin in Dia 0.96.1, and possibly other versions, allows local users ... |
| CVE-2008-5983 | — | — | 0.5% | Jan 28, 2009 | Untrusted search path vulnerability in the PySys_SetArgv API function in Python 2.6 and earlier, and possibly later vers... |
| CVE-2008-5982 | — | — | 7.8% | Jan 27, 2009 | Format string vulnerability in BMC PATROL Agent before 3.7.30 allows remote attackers to execute arbitrary code via form... |
| CVE-2008-5981 | — | — | 2.4% | Jan 27, 2009 | PacPoll 4.0 stores sensitive information under the web root with insufficient access control, which allows remote attack... |
| CVE-2008-5980 | — | — | 2.8% | Jan 27, 2009 | Ocean12 Mailing List Manager Gold stores sensitive data under the web root with insufficient access control, which allow... |
| CVE-2008-5979 | — | — | 1.7% | Jan 27, 2009 | Cross-site scripting (XSS) vulnerability in default.asp in Ocean12 Mailing List Manager Gold allows remote attackers to ... |
| CVE-2008-5978 | — | — | 1.1% | Jan 27, 2009 | Multiple SQL injection vulnerabilities in Ocean12 Mailing List Manager Gold allow remote attackers to execute arbitrary ... |
| CVE-2008-5977 | — | — | 1.0% | Jan 27, 2009 | SQL injection vulnerability in siteadmin/forgot.php in PHP JOBWEBSITE PRO allows remote attackers to execute arbitrary S... |
| CVE-2008-5976 | — | — | 1.5% | Jan 27, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in siteadmin/forgot.php in PHP JOBWEBSITE PRO allow remote attackers... |
| CVE-2008-5975 | — | — | 1.0% | Jan 27, 2009 | SQL injection vulnerability in links.asp in Active Price Comparison 4.0 allows remote attackers to execute arbitrary SQL... |
| CVE-2008-5974 | — | — | 1.0% | Jan 27, 2009 | Multiple SQL injection vulnerabilities in login.aspx in Active Price Comparison 4.0 allow remote attackers to execute ar... |
| CVE-2008-5973 | — | — | 1.0% | Jan 27, 2009 | SQL injection vulnerability in login.aspx in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL comman... |
| CVE-2008-5972 | — | — | 1.0% | Jan 27, 2009 | SQL injection vulnerability in default.asp in Active Business Directory 2 allows remote attackers to execute arbitrary S... |
| CVE-2008-5971 | — | — | 1.4% | Jan 27, 2009 | Cross-site scripting (XSS) vulnerability in profile_social.php in i-Net Solution Orkut Clone allows remote authenticated... |
| CVE-2008-5970 | — | — | 0.9% | Jan 27, 2009 | SQL injection vulnerability in profile_social.php in i-Net Solution Orkut Clone allows remote authenticated users to exe... |
| CVE-2008-5969 | — | — | 2.0% | Jan 27, 2009 | SQL injection vulnerability in popupproduct.php in Sunbyte e-Flower allows remote attackers to execute arbitrary SQL com... |
| CVE-2008-5968 | — | — | 2.9% | Jan 26, 2009 | Directory traversal vulnerability in print.php in PHP iCalendar 2.24 and earlier allows remote attackers to include and ... |
| CVE-2008-5967 | — | — | 3.3% | Jan 26, 2009 | admin/index.php in PHP iCalendar 2.3.4, 2.24, and earlier does not require administrative authentication for an addupdat... |
| CVE-2008-5966 | — | — | 2.3% | Jan 26, 2009 | globsy_edit.php in Globsy 1.0 and earlier allows remote attackers to create or overwrite arbitrary files via a filename ... |
| CVE-2008-5965 | — | — | 6.4% | Jan 26, 2009 | Directory traversal vulnerability in index.php in LokiCMS 0.3.4 and earlier, when magic_quotes_gpc is disabled, allows r... |
| CVE-2008-5260 | — | — | 5.8% | Jan 26, 2009 | Heap-based buffer overflow in the CamImage.CamImage.1 ActiveX control in AxisCamControl.ocx in AXIS Camera Control 2.40.... |
| CVE-2008-5964 | — | — | 1.5% | Jan 23, 2009 | Session fixation vulnerability in Social ImpressCMS before 1.1.1 RC1 allows remote attackers to hijack web sessions by s... |
| CVE-2008-5963 | — | — | 3.4% | Jan 23, 2009 | Eval injection vulnerability in library/setup/rpc.php in Gravity Getting Things Done (GTD) 0.4.5 and earlier allows remo... |
| CVE-2008-5962 | — | — | 1.9% | Jan 23, 2009 | Directory traversal vulnerability in library/setup/rpc.php in Gravity Getting Things Done (GTD) 0.4.5 and earlier allows... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now