2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-5220 | — | — | 14.3% | Nov 25, 2008 | Unrestricted file upload vulnerability in admin/upload_form.php in wPortfolio 0.3 and earlier allows remote attackers to... |
| CVE-2008-5219 | — | — | 6.9% | Nov 25, 2008 | The password change feature (admin/cp.php) in VideoScript 4.0.1.50 and earlier does not check for administrative authent... |
| CVE-2008-5218 | — | — | 2.7% | Nov 25, 2008 | ScriptsEz FREEze Greetings 1.0 stores pwd.txt under the web root with insufficient access control, which allows remote a... |
| CVE-2008-5217 | — | — | 1.9% | Nov 24, 2008 | Directory traversal vulnerability in index.php in txtCMS 0.3, when register_globals is enabled and magic_quotes_gpc is d... |
| CVE-2008-5216 | — | — | 1.0% | Nov 24, 2008 | SQL injection vulnerability in category_list.php in AJ Square ZeusCart 2.0 and earlier allows remote attackers to execut... |
| CVE-2008-5215 | — | — | 1.0% | Nov 24, 2008 | SQL injection vulnerability in service/profil.php in ClanLite 2.2006.05.20 allows remote attackers to execute arbitrary ... |
| CVE-2008-5214 | — | — | 1.5% | Nov 24, 2008 | Cross-site scripting (XSS) vulnerability in service/calendrier.php in ClanLite 2.2006.05.20 allows remote attackers to i... |
| CVE-2008-5213 | — | — | 1.0% | Nov 24, 2008 | SQL injection vulnerability in featured_article.php in AJ Article 1.0 allows remote attackers to execute arbitrary SQL c... |
| CVE-2008-5212 | — | — | 1.0% | Nov 24, 2008 | SQL injection vulnerability in classifide_ad.php in AJ Auction 6.2.1 and earlier allows remote attackers to execute arbi... |
| CVE-2008-5211 | — | — | 1.8% | Nov 24, 2008 | Cross-site scripting (XSS) vulnerability in search.php in Sphider 1.3.4, when the search suggestion feature is enabled, ... |
| CVE-2008-5210 | — | — | 2.8% | Nov 24, 2008 | Multiple PHP remote file inclusion vulnerabilities in PhpBlock A8.5 allow remote attackers to execute arbitrary PHP code... |
| CVE-2008-5209 | — | — | 2.8% | Nov 24, 2008 | Directory traversal vulnerability in modules/download/get_file.php in Admidio 1.4.8 allows remote attackers to read arbi... |
| CVE-2008-5208 | — | — | 2.0% | Nov 24, 2008 | SQL injection vulnerability in sub_votepic.php in the Datsogallery (com_datsogallery) module 1.6 for Joomla! allows remo... |
| CVE-2008-5207 | — | — | 1.4% | Nov 21, 2008 | Multiple directory traversal vulnerabilities in Jonascms 1.2 allow remote attackers to include and execute arbitrary loc... |
| CVE-2008-5206 | — | — | 1.3% | Nov 21, 2008 | PHP remote file inclusion vulnerability in modules/mod_mainmenu.php in MosXML 1 Alpha allows remote attackers to execute... |
| CVE-2008-5205 | — | — | 1.0% | Nov 21, 2008 | Cross-site scripting (XSS) vulnerability in edit.php in wellyblog allows remote attackers to inject arbitrary web script... |
| CVE-2008-5204 | — | — | 1.8% | Nov 21, 2008 | Multiple directory traversal vulnerabilities in PowerAward 1.1.0 RC1, when register_globals is enabled, allow remote att... |
| CVE-2008-5203 | — | — | 1.4% | Nov 21, 2008 | Cross-site scripting (XSS) vulnerability in external_vote.php in PowerAward 1.1.0 RC1 allows remote attackers to inject ... |
| CVE-2008-5202 | — | — | 1.4% | Nov 21, 2008 | Cross-site scripting (XSS) vulnerability in index.php in OTManager CMS 24a allows remote attackers to inject arbitrary w... |
| CVE-2008-5201 | — | — | 2.5% | Nov 21, 2008 | Directory traversal vulnerability in index.php in OTManager CMS 24a allows remote attackers to include and execute arbit... |
| CVE-2008-5200 | — | — | 1.0% | Nov 21, 2008 | SQL injection vulnerability in the Xe webtv (com_xewebtv) component for Joomla! allows remote attackers to execute arbit... |
| CVE-2008-5199 | — | — | 2.9% | Nov 21, 2008 | PHP remote file inclusion vulnerability in include.php in PHPOutsourcing IdeaBox (aka IdeBox) 1.1 allows remote attacker... |
| CVE-2008-5198 | — | — | 1.0% | Nov 21, 2008 | SQL injection vulnerability in memberlist.php in Acmlmboard 1.A2 allows remote attackers to execute arbitrary SQL comman... |
| CVE-2008-5197 | — | — | 4.1% | Nov 21, 2008 | SQL injection vulnerability in classifieds.php in PHP-Fusion allows remote attackers to execute arbitrary SQL commands v... |
| CVE-2008-5196 | — | — | 1.0% | Nov 21, 2008 | SQL injection vulnerability in kroax.php in the Kroax (the_kroax) 4.42 and earlier module for PHP-Fusion allows remote a... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now