2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-5894Directory traversal vulnerability in index.php in Mediatheka 4.2 allows remote attackers to include and execute arbitrar...
CVE-2008-5893Cross-site scripting (XSS) vulnerability in admin_dblayers.asp in ClickAndEmail allows remote attackers to inject arbitr...
CVE-2008-5892Multiple SQL injection vulnerabilities in ClickAndEmail allow remote attackers to execute arbitrary SQL commands via (1)...
CVE-2008-5891Cross-site scripting (XSS) vulnerability in the profile editing functionality in Injader before 2.1.2 allows remote atta...
CVE-2008-5890SQL injection vulnerability in feeds.php in Injader before 2.1.2 allows remote attackers to execute arbitrary SQL comman...
CVE-2008-5889Cross-site scripting (XSS) vulnerability in user.asp in Click&Rank allows remote attackers to inject arbitrary web scrip...
CVE-2008-5888Multiple SQL injection vulnerabilities in Click&Rank allow remote attackers to execute arbitrary SQL commands via the id...
CVE-2008-5887phplist before 2.10.8 allows remote attackers to include files via unknown vectors, related to a "local file include vul...
CVE-2008-5886TAKempis Discussion Web 4.0 stores sensitive information under the web root with insufficient access control, which allo...
CVE-2008-5885The Net Guys ASPired2Quote stores sensitive information under the web root with insufficient access control, which allow...
CVE-2008-5884AyeView 2.20 allows user-assisted attackers to cause a denial of service (application crash) via a GIF file with a malfo...
CVE-2008-5883Absolute path traversal vulnerability in front-end/dir.php in mini-pub 0.3 and earlier allows remote attackers to list a...
CVE-2008-5882SQL injection vulnerability in login.asp in Citrix Application Gateway - Broadcast Server (BCS) before 6.1, as used by A...
CVE-2008-5881Multiple directory traversal vulnerabilities in playSMS 0.9.3 allow remote attackers to include and execute arbitrary lo...
CVE-2008-5880admin/auth.php in Gobbl CMS 1.0 allows remote attackers to bypass authentication and gain administrative access by setti...
CVE-2008-5879Cross-site scripting (XSS) vulnerability in index.php in Phpclanwebsite (aka PCW) 1.23.3 Fix Pack 5 and earlier, allows ...
CVE-2008-5878Multiple directory traversal vulnerabilities in Phpclanwebsite (aka PCW) 1.23.3 Fix Pack 5 and earlier, when magic_quote...
CVE-2008-5877Multiple SQL injection vulnerabilities in Phpclanwebsite (aka PCW) 1.23.3 Fix Pack 5 and earlier, when magic_quotes_gpc ...
CVE-2008-5876Buffer overflow in Irrlicht before 1.5 allows remote attackers to cause a denial of service (crash) and possibly execute...
CVE-2008-5875SQL injection vulnerability in the com_lowcosthotels component in the Hotel Booking Reservation System (aka HBS) for Joo...
CVE-2008-5874Multiple SQL injection vulnerabilities in the Hotel Booking Reservation System (aka HBS) for Joomla! allow remote attack...
CVE-2008-4827Multiple heap-based buffer overflows in the AddTab method in the (1) Tab and (2) CTab ActiveX controls in c1sizer.ocx an...
CVE-2008-3819dnsserver in Cisco Application Control Engine Global Site Selector (GSS) before 3.0(1) allows remote attackers to cause ...
CVE-2008-0067Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote att...
CVE-2008-5873Yerba SACphp 6.3 and earlier allows remote attackers to bypass authentication and gain administrative access via a galle...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now