2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-5954SQL injection vulnerability in KTP Computer Customer Database (KTPCCD) CMS, when magic_quotes_gpc is disabled, allows re...
CVE-2008-5953Directory traversal vulnerability in KTP Computer Customer Database (KTPCCD) CMS, when magic_quotes_gpc is disabled, all...
CVE-2008-5952SQL injection vulnerability in KTP Computer Customer Database (KTPCCD) CMS, when magic_quotes_gpc is disabled, allows re...
CVE-2008-5951ASP Template Creature stores sensitive information under the web root with insufficient access control, which allows rem...
CVE-2008-5950SQL injection vulnerability in media/media_level.asp in ASP Template Creature allows remote attackers to execute arbitra...
CVE-2008-5949Multiple PHP remote file inclusion vulnerabilities in ccTiddly 1.7.4 and 1.7.6 allow remote attackers to execute arbitra...
CVE-2008-5948Directory traversal vulnerability in index.php in BNCwi 1.04 and earlier allows remote attackers to include and execute ...
CVE-2008-3820Cisco Security Manager 3.1 and 3.2 before 3.2.2, when Cisco IPS Event Viewer (IEV) is used, exposes TCP ports used by th...
CVE-2008-2384SQL injection vulnerability in mod_auth_mysql.c in the mod-auth-mysql (aka libapache2-mod-auth-mysql) module for the Apa...
CVE-2008-5947PHP remote file inclusion vulnerability in include/class_yapbbcooker.php in YapBB 1.2.Beta 2 allows remote attackers to ...
CVE-2008-5946SQL injection vulnerability in readmore.php in PHP-Fusion 4.01 allows remote attackers to execute arbitrary SQL commands...
CVE-2008-5945Nukeviet 2.0 Beta allows remote attackers to bypass authentication and gain administrative access by setting the admf co...
CVE-2008-5944Cross-site scripting (XSS) vulnerability in modules.php in NavBoard 16 (2.6.0) allows remote attackers to inject arbitra...
CVE-2008-5943Multiple directory traversal vulnerabilities in NavBoard 16 (2.6.0) allow remote attackers to include and execute arbitr...
CVE-2008-5942Multiple cross-site scripting (XSS) vulnerabilities in MODx before 0.9.6.3 allow remote attackers to inject arbitrary we...
CVE-2008-5941Cross-site request forgery (CSRF) vulnerability in MODx 0.9.6.1p2 and earlier allows remote attackers to perform unautho...
CVE-2008-5940SQL injection vulnerability in index.php in MODx 0.9.6.2 and earlier, when magic_quotes_gpc is disabled, allows remote a...
CVE-2008-5939Cross-site scripting (XSS) vulnerability in index.php in MODx CMS 0.9.6.2 and earlier allows remote attackers to inject ...
CVE-2008-5938PHP remote file inclusion vulnerability in assets/snippets/reflect/snippet.reflect.php in MODx CMS 0.9.6.2 and earlier, ...
CVE-2008-5937AyeView 2.20 allows user-assisted attackers to cause a denial of service (memory consumption or application crash) via a...
CVE-2008-5936front-end/edit.php in mini-pub 0.3 and earlier allows remote attackers to read files and obtain PHP source code via a fi...
CVE-2008-3866The Trend Micro Personal Firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, as us...
CVE-2008-3865Multiple heap-based buffer overflows in the ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Ne...
CVE-2008-3864The ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, ...
CVE-2008-5935Facto stores sensitive information under the web root with insufficient access control, which allows remote attackers to...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now