2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-5312mailscanner 4.55.10 and other versions before 4.74.16-1 might allow local users to overwrite arbitrary files via a symli...
CVE-2008-5276Integer overflow in the ReadRealIndex function in real.c in the Real demuxer plugin in VideoLAN VLC media player 0.9.0 t...
CVE-2008-3059member/settings_account.php in Octeth Oempro 3.5.5.1, and possibly other versions before 4, uses cleartext to transmit a...
CVE-2008-3058Multiple SQL injection vulnerabilities in Octeth Oempro 3.5.5.1, and possibly other versions before 4, allow remote atta...
CVE-2008-3057Octeth Oempro 3.5.5.1, and possibly other versions before 4, does not set the secure flag for the PHPSESSID cookie in an...
CVE-2008-5311SQL injection vulnerability in image.php in NetArt Media Blog System 1.5 allows remote attackers to execute arbitrary SQ...
CVE-2008-5310SQL injection vulnerability in image.php in NetArt Media Car Portal 2.0 allows remote attackers to execute arbitrary SQL...
CVE-2008-5309SQL injection vulnerability in NetArt Media Real Estate Portal 1.2 allows remote attackers to execute arbitrary SQL comm...
CVE-2008-5308The Simple Forum 3.1d module for LoveCMS 1.6.2 Final does not properly restrict access to administrator functions, which...
CVE-2008-5307SQL injection vulnerability in admin/index.php in PG Roommate Finder Solution allows remote attackers to execute arbitra...
CVE-2008-5306SQL injection vulnerability in admin/index.php in PG Real Estate Solution allows remote attackers to execute arbitrary S...
CVE-2008-5303Race condition in the rmtree function in File::Path 1.08 (lib/File/Path.pm) in Perl 5.8.8 allows local users to to delet...
CVE-2008-5302Race condition in the rmtree function in File::Path 1.08 and 2.07 (lib/File/Path.pm) in Perl 5.8.8 and 5.10.0 allows loc...
CVE-2008-5301Directory traversal vulnerability in the ManageSieve implementation in Dovecot 1.0.15, 1.1, and 1.2 allows remote attack...
CVE-2008-5300Linux kernel 2.6.28 allows local users to cause a denial of service ("soft lockup" and process loss) via a large number ...
CVE-2008-5299chm2pdf 0.9 allows user-assisted local users to delete arbitrary files via a symlink attack on .chm files in the (1) /tm...
CVE-2008-5298chm2pdf 0.9 uses temporary files in directories with fixed names, which allows local users to cause a denial of service ...
CVE-2008-5297Buffer overflow in No-IP DUC 2.1.7 and earlier allows remote HTTP servers to execute arbitrary code via a crafted respon...
CVE-2008-5296Gallery 1.5.x before 1.5.10 and 1.6 before 1.6-RC3, when register_globals is enabled, allows remote attackers to bypass ...
CVE-2008-5295SQL injection vulnerability in index.php in Jamit Job Board 3.4.10 allows remote attackers to execute arbitrary SQL comm...
CVE-2008-5294SQL injection vulnerability in index.php in WebStudio eCatalogue allows remote attackers to execute arbitrary SQL comman...
CVE-2008-5293SQL injection vulnerability in index.php in WebStudio eHotel allows remote attackers to execute arbitrary SQL commands v...
CVE-2008-5292SQL injection vulnerability in view_snaps.php in VideoGirls BiZ allows remote attackers to execute arbitrary SQL command...
CVE-2008-5291Directory traversal vulnerability in code/track.php in FuzzyLime 3.03 allows remote attackers to include and execute arb...
CVE-2008-5290Cross-site scripting (XSS) vulnerability in full_txt.php in Werner Hilversum Clean CMS 1.5 allows remote attackers to in...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now