2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-5848 | — | — | 3.4% | Jan 6, 2009 | The Advantech ADAM-6000 module has 00000000 as its default password, which makes it easier for remote attackers to obtai... |
| CVE-2008-5847 | — | — | 1.8% | Jan 5, 2009 | Constructr CMS 3.02.5 and earlier stores passwords in cleartext in a MySQL database, which allows context-dependent atta... |
| CVE-2008-5846 | — | — | 1.0% | Jan 5, 2009 | Six Apart Movable Type (MT) before 4.23 allows remote authenticated users with create permission for posts to bypass int... |
| CVE-2008-5845 | — | — | 1.1% | Jan 5, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Six Apart Movable Type (MT) before 4.23 allow remote attackers to... |
| CVE-2008-5844 | — | — | 1.7% | Jan 5, 2009 | PHP 5.2.7 contains an incorrect change to the FILTER_UNSAFE_RAW functionality, and unintentionally disables magic_quotes... |
| CVE-2008-5843 | — | — | 0.3% | Jan 5, 2009 | Multiple untrusted search path vulnerabilities in pdfjam allow local users to gain privileges via a Trojan horse program... |
| CVE-2008-5842 | — | — | 0.9% | Jan 5, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in Fujitsu-Siemens WebTransactions 7.0, 7.1, and possibly other vers... |
| CVE-2008-5841 | — | — | 1.0% | Jan 5, 2009 | Multiple SQL injection vulnerabilities in iGaming 1.5 and earlier allow remote attackers to execute arbitrary SQL comman... |
| CVE-2008-5840 | — | — | 3.0% | Jan 5, 2009 | PHP iCalendar 2.24 and earlier allows remote attackers to bypass authentication by setting the phpicalendar and phpicale... |
| CVE-2008-5839 | — | — | 5.6% | Jan 5, 2009 | Buffer overflow in Foxmail 6.5 allows remote attackers to execute arbitrary code via a long mailto URI in the HREF attri... |
| CVE-2008-5838 | — | — | 1.2% | Jan 5, 2009 | SQL injection vulnerability in search_results.php in E-Php Scripts E-Shop (aka E-Php Shopping Cart) Shopping Cart Script... |
| CVE-2008-5828 | — | — | 14.3% | Jan 2, 2009 | Microsoft Windows Live Messenger Client 8.5.1 and earlier, when MSN Protocol Version 15 (MSNP15) is used over a NAT sess... |
| CVE-2008-5827 | — | — | 2.5% | Jan 2, 2009 | The Nokia 6131 Near Field Communication (NFC) phone with 05.12 firmware automatically installs software upon completing ... |
| CVE-2008-5826 | — | — | 2.4% | Jan 2, 2009 | The Nokia 6131 Near Field Communication (NFC) phone with 05.12 firmware allows remote attackers to cause a denial of ser... |
| CVE-2008-5825 | — | — | 1.6% | Jan 2, 2009 | The SmartPoster implementation on the Nokia 6131 Near Field Communication (NFC) phone with 05.12 firmware does not prope... |
| CVE-2008-5824 | — | — | 6.0% | Jan 2, 2009 | Heap-based buffer overflow in msadpcm.c in libaudiofile in audiofile 0.2.6 allows context-dependent attackers to cause a... |
| CVE-2008-5823 | — | — | 8.4% | Jan 2, 2009 | An ActiveX control in prtstb06.dll in Microsoft Money 2006, when used with WScript in Windows Script Host (WSH) on Windo... |
| CVE-2008-5822 | — | — | 2.1% | Jan 2, 2009 | Memory leak in Libxul, as used in Mozilla Firefox 3.0.5 and other products, allows remote attackers to cause a denial of... |
| CVE-2008-5821 | — | — | 3.9% | Jan 2, 2009 | Memory leak in WebKit.dll in WebKit, as used by Apple Safari 3.2 on Windows Vista SP1, allows remote attackers to cause ... |
| CVE-2008-2381 | — | — | 1.6% | Jan 2, 2009 | SQL injection vulnerability in the create function in common/include/GroupJoinRequest.class in GForge 4.5 and 4.6 allows... |
| CVE-2008-5820 | — | — | 1.0% | Jan 2, 2009 | SQL injection vulnerability in eDNews_view.php in eDreamers eDNews 2 allows remote attackers to execute arbitrary SQL co... |
| CVE-2008-5819 | — | — | 1.9% | Jan 2, 2009 | Directory traversal vulnerability in eDNews_archive.php in eDreamers eDNews 2, when magic_quotes_gpc is disabled, allows... |
| CVE-2008-5818 | — | — | 2.0% | Jan 2, 2009 | Directory traversal vulnerability in index.php in eDreamers eDContainer 2.22, when magic_quotes_gpc is disabled, allows ... |
| CVE-2008-5817 | — | — | 1.1% | Jan 2, 2009 | Multiple SQL injection vulnerabilities in index.php in Web Scribble Solutions webClassifieds 2005 allow remote attackers... |
| CVE-2008-5816 | — | — | 1.3% | Jan 2, 2009 | SQL injection vulnerability in repository.php in ILIAS 3.7.4 and earlier allows remote attackers to execute arbitrary SQ... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now