7.1
    High

    CVE-2008-2752

    Last Modified: 27 Feb 2014

    Microsoft Word 2000 9.0.2812 and 2003 11.8106.8172 does not properly handle unordered lists, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted .doc file. NOTE: some of these details are obtained from third party information.

    Source:Ivan Sanchez
    Published:18 Jun 2008
    4.3
    Medium

    CVE-2008-2751

    Last Modified: 26 Feb 2014

    Multiple cross-site scripting (XSS) vulnerabilities in the Glassfish webadmin interface in Sun Java System Application Server 9.1_01 allow remote attackers to inject arbitrary web script or HTML via the (1) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:jndiProp:JndiNew, (2) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:resTypeProp:resType, (3) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:factoryClassProp:factoryClass, or (4) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:descProp:desc parameter to (a) resourceNode/customResourceNew.jsf; the (5) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:jndiProp:JndiNew, (6) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:resTypeProp:resType, (7) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:factoryClassProp:factoryClass, (8) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:jndiLookupProp:jndiLookup, or (9) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:descProp:desc parameter to (b) resourceNode/externalResourceNew.jsf; the (10) propertyForm:propertySheet:propertSectionTextField:jndiProp:Jndi, (11) propertyForm:propertySheet:propertSectionTextField:nameProp:name, or (12) propertyForm:propertySheet:propertSectionTextField:descProp:desc parameter to (c) resourceNode/jmsDestinationNew.jsf; the (13) propertyForm:propertySheet:generalPropertySheet:jndiProp:Jndi or (14) propertyForm:propertySheet:generalPropertySheet:descProp:cd parameter to (d) resourceNode/jmsConnectionNew.jsf; the (15) propertyForm:propertySheet:propertSectionTextField:jndiProp:jnditext or (16) propertyForm:propertySheet:propertSectionTextField:descProp:desc parameter to (e) resourceNode/jdbcResourceNew.jsf; the (17) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:nameProp:name, (18) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:classNameProp:classname, or (19) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:loadOrderProp:loadOrder parameter to (f) applications/lifecycleModulesNew.jsf; or the (20) propertyForm:propertyContentPage:propertySheet:generalPropertySheet:jndiProp:name, (21) propertyForm:propertyContentPage:propertySheet:generalPropertySheet:resTypeProp:resType, or (22) propertyForm:propertyContentPage:propertySheet:generalPropertySheet:dbProp:db parameter to (g) resourceNode/jdbcConnectionPoolNew1.jsf.

    Source:Eduardo Jorge
    Published:18 Jun 2008
    5
    Medium

    CVE-2008-2748

    Last Modified: 27 Feb 2014

    Skulltag 0.97d2-RC2 and earlier allows remote attackers to cause a denial of service (daemon hang) via a series of long, malformed connect packets, related to these packets being "parsed multiple times."

    Source:Luigi Auriemma
    Published:18 Jun 2008
    7.5
    High

    CVE-2008-2746

    Last Modified: 6 Dec 2016

    SQL injection vulnerability in login.php in Gryphon gllcTS2 4.2.4 allows remote attackers to execute arbitrary SQL commands via the detail parameter.

    Source:TheDefaced
    Published:17 Jun 2008
    9.3
    Critical

    CVE-2008-2745

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in BiAnno ActiveX Control (BiAnno.ocx) in Black Ice Software Annotation Plugin 10.95 allows remote attackers to execute arbitrary code via a long parameter to the AnnoSaveToTiff method.

    Source:shinnai
    Published:17 Jun 2008
    4.3
    Medium

    CVE-2008-2744

    Last Modified: 26 Feb 2014

    Cross-site scripting (XSS) vulnerability in vBulletin 3.6.10 and 3.7.1 allows remote attackers to inject arbitrary web script or HTML via unknown vectors and an "obscure method." NOTE: the vector is probably in the redirect parameter to the Admin Control Panel (admincp/index.php).

    Source:anonymous
    Published:17 Jun 2008
    7.5
    High

    CVE-2008-2742

    Last Modified: 23 Apr 2026

    Unrestricted file upload in the mcpuk file editor (atk/attributes/fck/editor/filemanager/browser/mcpuk/connectors/php/config.php) in Achievo 1.2.0 through 1.3.2 allows remote attackers to execute arbitrary code by uploading a file with .php followed by a safe extension, then accessing it via a direct request to the file in the Achievo root directory. NOTE: this is only a vulnerability in environments that support multiple extensions, such as Apache with the mod_mime module enabled.

    Source:EgiX
    Published:17 Jun 2008
    Low

    CVE-2008-2737

    Last Modified: 27 Oct 2016

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-3558. Reason: This candidate is a duplicate of CVE-2008-3558. Notes: All CVE users should reference CVE-2008-3558 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:Guido Landi
    Published:18 Aug 2008
    6.8
    Medium

    CVE-2008-2719

    Last Modified: 26 Feb 2014

    Off-by-one error in the ppscan function (preproc.c) in Netwide Assembler (NASM) 2.02 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted file that triggers a stack-based buffer overflow.

    Source:Philipp Thomas
    Published:14 Apr 2008
    9.3
    Critical

    CVE-2008-2712

    Last Modified: 3 Mar 2014

    Vim 7.1.314, 6.4, and other versions allows user-assisted remote attackers to execute arbitrary commands via Vim scripts that do not properly sanitize inputs before invoking the execute or system functions, as demonstrated using (1) filetype.vim, (3) xpm.vim, (4) gzip_vim, and (5) netrw. NOTE: the originally reported version was 7.1.314, but the researcher actually found this set of issues in 7.1.298. NOTE: the zipplugin issue (originally vector 2 in this identifier) has been subsumed by CVE-2008-3075.

    Source:Jan Minar
    Published:15 Jun 2008
    10
    Critical

    CVE-2008-2703

    Last Modified: 27 Oct 2016

    Multiple stack-based buffer overflows in Novell GroupWise Messenger (GWIM) Client before 2.0.3 HP1 for Windows allow remote attackers to execute arbitrary code via "spoofed server responses" that contain a long string after the NM_A_SZ_TRANSACTION_ID field name.

    Source:Francisco Amato
    Published:13 Jun 2008
    9.3
    Critical

    CVE-2008-2702

    Last Modified: 25 Feb 2014

    Directory traversal vulnerability in the FTP client in ALTools ESTsoft ALFTP 4.1 beta 2 and 5.0 allows remote FTP servers to create or overwrite arbitrary files via a .. (dot dot) in a response to a LIST command, a related issue to CVE-2002-1345. NOTE: this can be leveraged for code execution by writing to a Startup folder.

    Source:Tan Chew Keong
    Published:13 Jun 2008
    6.8
    Medium

    CVE-2008-2701

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the GameQ (com_gameq) component 4.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the category_id parameter in a page action to index.php.

    Source:His0k4
    Published:13 Jun 2008
    7.5
    High

    CVE-2008-2700

    Last Modified: 7 Dec 2016

    SQL injection vulnerability in view.php in Galatolo WebManager 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:Stack
    Published:13 Jun 2008
    7.5
    High

    CVE-2008-2699

    Last Modified: 7 Dec 2016

    Multiple directory traversal vulnerabilities in Galatolo WebManager (GWM) 1.0 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in (1) the plugin parameter to admin/plugins.php or (2) the com parameter to index.php.

    Source:StAkeR
    Published:13 Jun 2008
    7.5
    High

    CVE-2008-2697

    Last Modified: 5 Dec 2016

    SQL injection vulnerability in the Rapid Recipe (com_rapidrecipe) component 1.6.6 and 1.6.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe action to index.php.

    Source:His0k4
    Published:13 Jun 2008
    7.5
    High

    CVE-2008-2695

    Last Modified: 7 Dec 2016

    Directory traversal vulnerability in entry.php in phpInv 0.8.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the action parameter.

    Source:CWH Underground
    Published:13 Jun 2008
    4.3
    Medium

    CVE-2008-2694

    Last Modified: 7 Dec 2016

    Cross-site scripting (XSS) vulnerability in search.php in phpInv 0.8.0 allows remote attackers to inject arbitrary web script or HTML via the keyword parameter.

    Source:CWH Underground
    Published:13 Jun 2008
    9.3
    Critical

    CVE-2008-2693

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the BITIFF.BITiffCtrl.1 ActiveX control in BITiff.ocx 10.9.3.0 in Black Ice Barcode SDK 5.01 allows remote attackers to execute arbitrary code via a long first argument to the SetByteOrder method.

    Source:shinnai
    Published:13 Jun 2008
    7.5
    High

    CVE-2008-2692

    Last Modified: 5 Dec 2016

    SQL injection vulnerability in the yvComment (com_yvcomment) component 1.16.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the ArticleID parameter in a comment action to index.php.

    Source:His0k4
    Published:13 Jun 2008
    7.5
    High

    CVE-2008-2691

    Last Modified: 5 Dec 2016

    SQL injection vulnerability in read.asp in JiRo's FAQ Manager eXperience 1.0 allows remote attackers to execute arbitrary SQL commands via the fID parameter.

    Source:Zigma
    Published:13 Jun 2008
    9.3
    Critical

    CVE-2008-2690

    Last Modified: 5 Dec 2016

    Multiple PHP remote file inclusion vulnerabilities in BrowserCRM 5.002.00, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the bcrm_pub_root parameter to (1) kb.php, (2) login.php, (3) index.php, (4) contact_view.php, and (5) contact.php in pub/, different vectors than CVE-2008-2689. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:ahmadbady
    Published:13 Jun 2008
    10
    Critical

    CVE-2008-2689

    Last Modified: 5 Dec 2016

    PHP remote file inclusion vulnerability in pub/clients.php in BrowserCRM 5.002.00 allows remote attackers to execute arbitrary PHP code via a URL in the bcrm_pub_root parameter.

    Source:ahmadbady
    Published:13 Jun 2008
    7.5
    High

    CVE-2008-2688

    Last Modified: 5 Dec 2016

    SQL injection vulnerability in pilot.asp in ASPilot Pilot Cart 7.3 allows remote attackers to execute arbitrary SQL commands via the article parameter in a kb action.

    Source:Bl@ckbe@rD
    Published:13 Jun 2008
    7.5
    High

    CVE-2008-2687

    Last Modified: 7 Dec 2016

    Directory traversal vulnerability in inc/config.php in ProManager 0.73 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the language parameter.

    Source:Stack
    Published:13 Jun 2008
    7.5
    High

    CVE-2008-2686

    Last Modified: 5 Dec 2016

    webinc/bxe/scripts/loadsave.php in Flux CMS 1.5.0 and earlier allows remote attackers to execute arbitrary code by overwriting a PHP file in webinc/bxe/scripts/ via a filename in the XML parameter and PHP sequences in the request body, then making a direct request for this filename.

    Source:EgiX
    Published:13 Jun 2008
    9.3
    Critical

    CVE-2008-2684

    Last Modified: 23 Apr 2026

    The BIDIB.BIDIBCtrl.1 ActiveX control in BIDIB.ocx 10.9.3.0 in Black Ice Barcode SDK 5.01 allows remote attackers to execute arbitrary code via long strings in the two arguments to the DownloadImageFileURL method, which trigger memory corruption. NOTE: some of these details are obtained from third party information.

    Source:shinnai
    Published:12 Jun 2008
    9.3
    Critical

    CVE-2008-2683

    Last Modified: 21 Jun 2011

    The BIDIB.BIDIBCtrl.1 ActiveX control in BIDIB.ocx 10.9.3.0 in Black Ice Barcode SDK 5.01 allows remote attackers to force the download and storage of arbitrary files by specifying the origin URL in the first argument to the DownloadImageFileURL method, and the local filename in the second argument. NOTE: some of these details are obtained from third party information.

    Source:Metasploit
    Published:12 Jun 2008
    7.5
    High

    CVE-2008-2682

    Last Modified: 23 Apr 2026

    _RealmAdmin/login.asp in Realm CMS 2.3 and earlier allows remote attackers to bypass authentication and access admin pages via certain modified cookies, probably including (1) cUserRole, (2) cUserName, and (3) cUserID.

    Source:BugReport.IR
    Published:12 Jun 2008
    5
    Medium

    CVE-2008-2681

    Last Modified: 23 Apr 2026

    Realm CMS 2.3 and earlier allows remote attackers to obtain sensitive information via a direct request to _db/compact.asp, which reveals the database path in an error message.

    Source:BugReport.IR
    Published:12 Jun 2008
    4.3
    Medium

    CVE-2008-2680

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in _db/compact.asp in Realm CMS 2.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) CmpctedDB and (2) Boyut parameters.

    Source:BugReport.IR
    Published:12 Jun 2008
    7.5
    High

    CVE-2008-2679

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the KeyWordsList function in _includes/inc_routines.asp in Realm CMS 2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the kwrd parameter in a kwl action to the default URI.

    Source:BugReport.IR
    Published:12 Jun 2008
    7.5
    High

    CVE-2008-2678

    Last Modified: 7 Dec 2016

    Multiple SQL injection vulnerabilities in Telephone Directory 2008, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) code parameter in a confirm_data action to edit1.php and the (2) id parameter to view_more.php.

    Source:CWH Underground
    Published:12 Jun 2008
    4.3
    Medium

    CVE-2008-2677

    Last Modified: 7 Dec 2016

    Cross-site scripting (XSS) vulnerability in edit1.php in Telephone Directory 2008 allows remote attackers to inject arbitrary web script or HTML via the action parameter.

    Source:CWH Underground
    Published:12 Jun 2008
    7.5
    High

    CVE-2008-2676

    Last Modified: 5 Dec 2016

    SQL injection vulnerability in the iJoomla News Portal (com_news_portal) component 1.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.php.

    Source:ilker Kandemir
    Published:12 Jun 2008
    7.5
    High

    CVE-2008-2673

    Last Modified: 5 Dec 2016

    SQL injection vulnerability in index.php in Powie pNews 2.08 and 2.10, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the shownews parameter.

    Source:Cr@zy_King
    Published:12 Jun 2008
    7.5
    High

    CVE-2008-2672

    Last Modified: 7 Dec 2016

    Multiple directory traversal vulnerabilities in ErfurtWiki R1.02b and earlier, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) ewiki_id and (2) ewiki_action parameters to fragments/css.php, and possibly the (3) id parameter to the default URI. NOTE: the default URI is site-specific but often performs an include_once of ewiki.php.

    Source:Unohope
    Published:12 Jun 2008
    7.5
    High

    CVE-2008-2671

    Last Modified: 7 Dec 2016

    SQL injection vulnerability in comments.php in DCFM Blog 0.9.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:Unohope
    Published:12 Jun 2008
    7.5
    High

    CVE-2008-2670

    Last Modified: 7 Dec 2016

    Multiple SQL injection vulnerabilities in index.php in Insanely Simple Blog 0.5 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter, or (2) the term parameter in a search action. NOTE: the current_subsection parameter is already covered by CVE-2007-3889.

    Source:Unohope
    Published:12 Jun 2008
    7.5
    High

    CVE-2008-2669

    Last Modified: 7 Dec 2016

    Multiple SQL injection vulnerabilities in yBlog 0.2.2.2 allow remote attackers to execute arbitrary SQL commands via (1) the q parameter to search.php, or the n parameter to (2) user.php or (3) uss.php.

    Source:Unohope
    Published:12 Jun 2008
    4.3
    Medium

    CVE-2008-2668

    Last Modified: 7 Dec 2016

    Multiple cross-site scripting (XSS) vulnerabilities in yBlog 0.2.2.2 allow remote attackers to inject arbitrary web script or HTML via (1) the q parameter to search.php, or the n parameter to (2) user.php or (3) uss.php.

    Source:Unohope
    Published:12 Jun 2008
    5
    Medium

    CVE-2008-2666

    Last Modified: 27 Feb 2014

    Multiple directory traversal vulnerabilities in PHP 5.2.6 and earlier allow context-dependent attackers to bypass safe_mode restrictions by creating a subdirectory named http: and then placing ../ (dot dot slash) sequences in an http URL argument to the (1) chdir or (2) ftok function.

    Source:Maksymilian Arciemowicz
    Published:18 Jun 2008
    7.5
    High

    CVE-2008-2652

    Last Modified: 5 Dec 2016

    Multiple SQL injection vulnerabilities in catalog.php in SMEWeb 1.4b and 1.4f allow remote attackers to execute arbitrary SQL commands via the (1) idp and (2) category parameters.

    Source:CWH Underground
    Published:10 Jun 2008
    7.5
    High

    CVE-2008-2651

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the Joomla! Bulletin Board (aka Joo!BB or com_joobb) component 0.5.9 for Joomla! allows remote attackers to execute arbitrary SQL commands via the forum parameter in a forum action to index.php.

    Source:His0k4
    Published:10 Jun 2008
    6.8
    Medium

    CVE-2008-2650

    Last Modified: 23 Dec 2016

    Directory traversal vulnerability in cmsimple/cms.php in CMSimple 3.1, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the sl parameter to index.php. NOTE: this can be leveraged for remote file execution by including adm.php and then invoking the upload action. NOTE: on 20080601, the vendor patched 3.1 without changing the version number.

    Source:irk4z
    Published:10 Jun 2008
    7.5
    High

    CVE-2008-2649

    Last Modified: 2 Dec 2016

    Multiple PHP remote file inclusion vulnerabilities in DesktopOnNet 3 Beta allow remote attackers to execute arbitrary PHP code via a URL in the app_path parameter to (1) don3_requiem.don3app/don3_requiem.php and (2) frontpage.don3app/frontpage.php.

    Source:MK
    Published:10 Jun 2008
    6.8
    Medium

    CVE-2008-2648

    Last Modified: 7 Dec 2016

    Unrestricted file upload vulnerability in upload/uploader.html in meBiblio 0.4.7 allows remote attackers to execute arbitrary code by uploading a .php file, then accessing it via a direct request to the files/ directory.

    Source:CWH Underground
    Published:10 Jun 2008
    7.5
    High

    CVE-2008-2647

    Last Modified: 7 Dec 2016

    SQL injection vulnerability in admin/journal_change_mask.inc.php in meBiblio 0.4.7 allows remote attackers to execute arbitrary SQL commands via the JID parameter.

    Source:CWH Underground
    Published:10 Jun 2008
    4.3
    Medium

    CVE-2008-2646

    Last Modified: 7 Dec 2016

    Multiple cross-site scripting (XSS) vulnerabilities in meBiblio 0.4.7 allow remote attackers to inject arbitrary web script or HTML via the (1) sql parameter to dbadd.inc.php, (2) InsertJournal parameter to add_journal_mask.inc.php, (3) InsertBibliography parameter to insert_mask.inc.php, and (4) LabelYear parameter to search_mask.inc.php.

    Source:CWH Underground
    Published:10 Jun 2008
    7.5
    High

    CVE-2008-2645

    Last Modified: 7 Dec 2016

    Multiple PHP remote file inclusion vulnerabilities in Brim (formerly Booby) 1.0.1 allow remote attackers to execute arbitrary PHP code via a URL in the renderer parameter to template.tpl.php in (1) barrel/, (2) barry/, (3) mylook/, (4) oerdec/, (5) penguin/, (6) sidebar/, (7) slashdot/, and (8) text-only/ in templates/. NOTE: this can also be leveraged to include and execute arbitrary local files via directory traversal sequences.

    Source:HaiHui
    Published:10 Jun 2008