2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-20001 | HIGH | 7.5 | 1.0% | Aug 30, 2025 | activePDF WebGrabber version 3.8.2.0 contains a stack-based buffer overflow vulnerability in the GetStatus() method of t... |
| CVE-2008-7314 | HIGH | 7.5 | 1.3% | Jan 23, 2020 | mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname. |
| CVE-2008-7273 | HIGH | 7.8 | 0.4% | Nov 18, 2019 | A symlink issue exists in Iceweasel-firegpg before 0.6 due to insecure tempfile handling. |
| CVE-2008-7272 | HIGH | 7.5 | 0.9% | Nov 8, 2019 | FireGPG before 0.6 handle user’s passphrase and decrypted cleartext insecurely by writing pre-encrypted cleartext and th... |
| CVE-2008-3278 | HIGH | 7.8 | 0.4% | Nov 7, 2019 | frysk packages through 2008-08-05 as shipped in Red Hat Enterprise Linux 5 are built with an insecure RPATH set in the E... |
| CVE-2008-0015 | HIGH | 8.8 | 76.6% | Jul 7, 2009 | Stack-based buffer overflow in the CComVariant::ReadFromStream function in the Active Template Library (ATL), as used in... |
| CVE-2008-6828 | HIGH | 7.8 | 0.2% | Jun 8, 2009 | Symantec Altiris Deployment Solution 6.x before 6.9.355 SP1 stores the Application Identity Account password in memory i... |
| CVE-2008-6827 | HIGH | 7.8 | 1.1% | Jun 8, 2009 | The ListView control in the Client GUI (AClient.exe) in Symantec Altiris Deployment Solution 6.x before 6.9.355 SP1 allo... |
| CVE-2008-6157 | HIGH | 7.5 | 3.0% | Feb 17, 2009 | SepCity Classified Ads stores the admin password in cleartext in data/classifieds.mdb, which allows context-dependent at... |
| CVE-2008-5748 | HIGH | 8.1 | 10.4% | Dec 29, 2008 | Directory traversal vulnerability in plugins/spaw2/dialogs/dialog.php in BloofoxCMS 0.3.4 allows remote attackers to rea... |
| CVE-2008-4122 | HIGH | 7.5 | 1.3% | Dec 19, 2008 | Joomla! 1.5.8 does not set the secure flag for the session cookie in an https session, which makes it easier for remote ... |
| CVE-2008-4390 | HIGH | 7.5 | 3.3% | Dec 9, 2008 | The Cisco Linksys WVC54GC wireless video camera before firmware 1.25 sends cleartext configuration data in response to a... |
| CVE-2008-5162 | HIGH | 7 | 0.3% | Nov 26, 2008 | The arc4random function in the kernel in FreeBSD 6.3 through 7.1 does not have a proper entropy source for a short time ... |
| CVE-2008-5183 | HIGH | 7.5 | 9.2% | Nov 21, 2008 | cupsd in CUPS 1.3.9 and earlier allows local users, and possibly remote attackers, to cause a denial of service (daemon ... |
| CVE-2008-4929 | HIGH | 7.5 | 2.2% | Nov 4, 2008 | MyBB (aka MyBulletinBoard) 1.4.2 uses insufficient randomness to compose filenames of uploaded files used as attachments... |
| CVE-2008-2992 | HIGH | 7.8 | 98.5% | Nov 4, 2008 | Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary c... |
| CVE-2008-4905 | HIGH | 7.5 | 1.5% | Nov 4, 2008 | Typo 5.1.3 and earlier uses a hard-coded salt for calculating password hashes, which makes it easier for attackers to gu... |
| CVE-2008-4309 | HIGH | 7.5 | 4.9% | Oct 31, 2008 | Integer overflow in the netsnmp_create_subtree_cache function in agent/snmp_agent.c in net-snmp 5.4 before 5.4.2.1, 5.3 ... |
| CVE-2008-4577 | HIGH | 7.5 | 2.3% | Oct 15, 2008 | The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows... |
| CVE-2008-4036 | HIGH | 8.4 | 1.5% | Oct 15, 2008 | Integer overflow in Memory Manager in Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and... |
| CVE-2008-3475 | HIGH | 8.8 | 39.9% | Oct 15, 2008 | Microsoft Internet Explorer 6 does not properly handle errors related to using the componentFromPoint method on xml obje... |
| CVE-2008-4197 | HIGH | 8.8 | 6.3% | Sep 27, 2008 | Opera before 9.52 on Windows, Linux, FreeBSD, and Solaris, when processing custom shortcut and menu commands, can produc... |
| CVE-2008-3637 | HIGH | 8.8 | 5.7% | Sep 26, 2008 | The Hash-based Message Authentication Code (HMAC) provider in Java on Apple Mac OS X 10.4.11, 10.5.4, and 10.5.5 uses an... |
| CVE-2008-3938 | HIGH | 8.8 | 0.5% | Sep 5, 2008 | Cross-site request forgery (CSRF) vulnerability in user_admin.php in Open Media Collectors Database (OpenDb) 1.0.6 allow... |
| CVE-2008-3939 | HIGH | 7.5 | 1.7% | Sep 5, 2008 | Directory traversal vulnerability in the web interface in AVTECH PageR Enterprise before 5.0.7 allows remote attackers t... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now