2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-5573——SQL injection vulnerability in the login feature in Poll Pro 2.0 allows remote attackers to execute arbitrary SQL comman...
CVE-2008-5572——Professional Download Assistant 0.1 stores sensitive information under the web root with insufficient access control, wh...
CVE-2008-5571——SQL injection vulnerability in admin/login.asp in Professional Download Assistant 0.1 allows remote attackers to execute...
CVE-2008-5570——Directory traversal vulnerability in index.php in PHP Multiple Newsletters 2.7, when magic_quotes_gpc is disabled, allow...
CVE-2008-5569——Multiple cross-site scripting (XSS) vulnerabilities in PHPepperShop 1.4 allow remote attackers to inject arbitrary web s...
CVE-2008-5568——Cross-site request forgery (CSRF) vulnerability in admin/settings.php in IPN Pro 3 1.44 and earlier allows remote attack...
CVE-2008-5567——Cross-site request forgery (CSRF) vulnerability in admin/ad_settings.php in Bonza Cart 1.10 and earlier allows remote at...
CVE-2008-5566——Cross-site scripting (XSS) vulnerability in index.php in Triangle Solutions PHP Multiple Newsletters 2.7 allows remote a...
CVE-2008-5565——Cross-site request forgery (CSRF) vulnerability in admin/settings.php in DL PayCart 1.34 and earlier allows remote attac...
CVE-2008-5564——Unspecified vulnerability in the media server in Orb Networks Orb before 2.01.0025 allows remote attackers to cause a de...
CVE-2008-5563——Aruba Mobility Controller 2.4.8.x-FIPS, 2.5.x, 3.1.x, 3.2.x, 3.3.1.x, and 3.3.2.x allows remote attackers to cause a den...
CVE-2008-5562——ASPPortal stores sensitive information under the web root with insufficient access control, which allows remote attacker...
CVE-2008-5561——SQL injection vulnerability in Netref 4.0 allows remote attackers to execute arbitrary SQL commands via the id parameter...
CVE-2008-5560——PostEcards stores sensitive information under the web root with insufficient access control, which allows remote attacke...
CVE-2008-5559——SQL injection vulnerability in sendcard.cfm in PostEcards allows remote attackers to execute arbitrary SQL commands via ...
CVE-2008-5430——Mozilla Thunderbird 2.0.14 does not properly handle (1) multipart/mixed e-mail messages with many MIME parts and possibl...
CVE-2008-5556——The XSS Filter in Microsoft Internet Explorer 8.0 Beta 2 does not recognize attack patterns designed to operate against ...
CVE-2008-5555——Microsoft Internet Explorer 8.0 Beta 2 relies on the XDomainRequestAllowed HTTP header to authorize data exchange betwee...
CVE-2008-5554——The XSS Filter in Microsoft Internet Explorer 8.0 Beta 2 does not properly handle some HTTP headers that appear after a ...
CVE-2008-5553——The XSS Filter in Microsoft Internet Explorer 8.0 Beta 2 disables itself upon encountering a certain X-XSS-Protection HT...
CVE-2008-5552——The XSS Filter in Microsoft Internet Explorer 8.0 Beta 2 allows remote attackers to bypass the XSS protection mechanism ...
CVE-2008-5551——The XSS Filter in Microsoft Internet Explorer 8.0 Beta 2 allows remote attackers to bypass the XSS protection mechanism ...
CVE-2008-5550——Open redirect vulnerability in console/faces/jsp/login/BeginLogin.jsp in Sun Java Web Console 3.0.2 through 3.0.5 and So...
CVE-2008-5549——Unspecified vulnerability in the Sun Java Web Console components in Sun Java System Portal Server 7.1 and 7.2 allows rem...
CVE-2008-5548——VirusBuster 4.5.11.0, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in a...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now