2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-5100 | — | — | 8.4% | Nov 17, 2008 | The strong name (SN) implementation in Microsoft .NET Framework 2.0.50727 relies on the digital signature Public Key Tok... |
| CVE-2008-5099 | — | — | 0.4% | Nov 17, 2008 | Sun Logical Domain Manager (aka LDoms Manager or ldm) 1.0 through 1.0.3 displays the value of the OpenBoot PROM (OBP) se... |
| CVE-2008-5098 | — | — | 2.0% | Nov 17, 2008 | Cross-site scripting (XSS) vulnerability in Sun Java System Messaging Server 6.2 and 6.3 allows remote attackers to inje... |
| CVE-2008-4216 | — | — | 8.6% | Nov 17, 2008 | The plug-in interface in WebKit in Apple Safari before 3.2 does not prevent plug-ins from accessing local URLs, which al... |
| CVE-2008-3644 | — | — | 0.3% | Nov 17, 2008 | Apple Safari before 3.2 does not properly prevent caching of form data for form fields that have autocomplete disabled, ... |
| CVE-2008-3623 | — | — | 8.4% | Nov 17, 2008 | Heap-based buffer overflow in CoreGraphics in Apple Safari before 3.2 on Windows, in iPhone OS 1.0 through 2.2.1, and in... |
| CVE-2008-5097 | — | — | 1.2% | Nov 14, 2008 | SQL injection vulnerability in index.php in MyFWB 1.0 allows remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2008-5096 | — | — | 1.2% | Nov 14, 2008 | Unspecified vulnerability in the TYPO3 File List (file_list) extension 0.2.1 and earlier allows remote attackers to obta... |
| CVE-2008-5095 | — | — | 1.2% | Nov 14, 2008 | Cross-site scripting (XSS) vulnerability in the Novell User Application 3.0.1, 3.5.0, and 3.5.1; and Identity Manager Ro... |
| CVE-2008-5094 | — | — | 1.7% | Nov 14, 2008 | Heap-based buffer overflow in the NDS Service in Novell eDirectory before 8.8 SP3 has unknown impact and attack vectors. |
| CVE-2008-5093 | — | — | 1.2% | Nov 14, 2008 | Cross-site scripting (XSS) vulnerability in the HTTP Protocol Stack (HTTPSTK) in Novell eDirectory before 8.8 SP3 allows... |
| CVE-2008-5092 | — | — | 1.7% | Nov 14, 2008 | Heap-based buffer overflows in Novell eDirectory HTTP protocol stack (HTTPSTK) before 8.8 SP3 have unknown impact and at... |
| CVE-2008-5091 | — | — | 2.1% | Nov 14, 2008 | Buffer overflow in the LDAP Service in Novell eDirectory 8.7.3 before SP10a and 8.8 before SP3 allows attackers to cause... |
| CVE-2008-5090 | — | — | 4.6% | Nov 14, 2008 | Electron Inc. Advanced Electron Forum before 1.0.7 allows remote attackers to execute arbitrary PHP code via PHP code em... |
| CVE-2008-5089 | — | — | 2.8% | Nov 14, 2008 | Multiple insecure method vulnerabilities in the DDActiveReportsViewer2.ARViewer2 ActiveX control (arview2.ocx) in Data D... |
| CVE-2008-5088 | — | — | 1.0% | Nov 14, 2008 | Multiple SQL injection vulnerabilities in PHPKB Knowledge Base Software 1.5 Professional allow remote attackers to execu... |
| CVE-2008-5087 | — | — | 1.0% | Nov 14, 2008 | SQL injection vulnerability in TYPO3 Another Backend Login (wrg_anotherbelogin) extension before 0.0.4 allows remote att... |
| CVE-2008-5076 | — | — | 0.4% | Nov 14, 2008 | htop 0.7 writes process names to a terminal without sanitizing non-printable characters, which might allow local users t... |
| CVE-2008-5075 | — | — | 0.9% | Nov 14, 2008 | Multiple SQL injection vulnerabilities in E-Uploader Pro 1.0 (aka Uploader PRO), when magic_quotes_gpc is disabled, allo... |
| CVE-2008-5074 | — | — | 1.0% | Nov 14, 2008 | SQL injection vulnerability in index.php in the Freshlinks 1.0 RC1 module for PHP-Fusion allows remote attackers to exec... |
| CVE-2008-5073 | — | — | 5.3% | Nov 14, 2008 | Heap-based buffer overflow in an ActiveX control in Novell ZENworks Desktop Management 6.5 allows remote attackers to ex... |
| CVE-2008-5072 | — | — | 2.4% | Nov 14, 2008 | vsfilter.dll in K-Lite Mega Codec Pack 3.5.7.0 allows remote attackers to cause a denial of service (application crash) ... |
| CVE-2008-5071 | — | — | 6.3% | Nov 14, 2008 | Multiple eval injection vulnerabilities in itpm_estimate.php in Yoxel 1.23beta and earlier allow remote authenticated us... |
| CVE-2008-5070 | — | — | 1.0% | Nov 14, 2008 | SQL injection vulnerability in Pro Chat Rooms 3.0.3, when magic_quotes_gpc is disabled, allows remote attackers to execu... |
| CVE-2008-5069 | — | — | 1.0% | Nov 14, 2008 | SQL injection vulnerability in go.php in Panuwat PromoteWeb MySQL, when magic_quotes_gpc is disabled, allows remote atta... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now