2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-5015 | — | — | 2.2% | Nov 13, 2008 | Mozilla Firefox 3.x before 3.0.4 assigns chrome privileges to a file: URI when it is accessed in the same tab from a chr... |
| CVE-2008-5014 | — | — | 5.9% | Nov 13, 2008 | jslock.cpp in Mozilla Firefox 3.x before 3.0.2, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMon... |
| CVE-2008-5013 | — | — | 4.8% | Nov 13, 2008 | Mozilla Firefox 2.x before 2.0.0.18 and SeaMonkey 1.x before 1.1.13 do not properly check when the Flash module has been... |
| CVE-2008-5012 | — | — | 2.0% | Nov 13, 2008 | Mozilla Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 do not properly ch... |
| CVE-2008-0017 | — | — | 7.7% | Nov 13, 2008 | The http-index-format MIME type parser (nsDirIndexParser) in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, and ... |
| CVE-2008-5051 | — | — | 1.0% | Nov 13, 2008 | SQL injection vulnerability in the JooBlog (com_jb2) component 0.1.1 for Joomla! allows remote attackers to execute arbi... |
| CVE-2008-5050 | — | — | 8.3% | Nov 13, 2008 | Off-by-one error in the get_unicode_name function (libclamav/vba_extract.c) in Clam Anti-Virus (ClamAV) before 0.94.1 al... |
| CVE-2008-5049 | — | — | 0.9% | Nov 13, 2008 | Buffer overflow in AKEProtect.sys 3.3.3.0 in ISecSoft Anti-Keylogger Elite 3.3.0 and earlier, and possibly other version... |
| CVE-2008-5048 | — | — | 0.9% | Nov 13, 2008 | Buffer overflow in Atepmon.sys in ISecSoft Anti-Trojan Elite 4.2.1 and earlier, and possibly 4.2.2, allows local users t... |
| CVE-2008-5047 | — | — | 1.1% | Nov 13, 2008 | SQL injection vulnerability in admin/index.php in Mole Group Rental Script allows remote attackers to execute arbitrary ... |
| CVE-2008-5046 | — | — | 1.1% | Nov 13, 2008 | SQL injection vulnerability in index.php in Mole Group Pizza Script allows remote attackers to execute arbitrary SQL com... |
| CVE-2008-5045 | — | — | 3.4% | Nov 13, 2008 | Heap-based buffer overflow in Network-Client FTP Now 2.6, and possibly other versions, allows remote FTP servers to caus... |
| CVE-2008-4989 | MEDIUM | 5.9 | 1.9% | Nov 13, 2008 | The _gnutls_x509_verify_certificate function in lib/x509/verify.c in libgnutls in GnuTLS before 2.6.1 trusts certificate... |
| CVE-2008-5044 | — | — | 1.7% | Nov 12, 2008 | Race condition in Microsoft Windows Server 2003 and Vista allows local users to cause a denial of service (crash or hang... |
| CVE-2008-5043 | — | — | 1.0% | Nov 12, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in the web-based interface in IBM Metrica Service Assurance Framewor... |
| CVE-2008-4037 | — | — | 59.1% | Nov 12, 2008 | Microsoft Windows 2000 Gold through SP4, XP Gold through SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 20... |
| CVE-2008-4033 | — | — | 27.7% | Nov 12, 2008 | Cross-domain vulnerability in Microsoft XML Core Services 3.0 through 6.0, as used in Microsoft Expression Web, Office, ... |
| CVE-2008-4029 | — | — | 26.7% | Nov 12, 2008 | Cross-domain vulnerability in Microsoft XML Core Services 3.0 and 4.0, as used in Internet Explorer, allows remote attac... |
| CVE-2008-5042 | — | — | 3.3% | Nov 12, 2008 | Zeeways PhotoVideoTube 1.1 and earlier allows remote attackers to bypass authentication and perform administrative tasks... |
| CVE-2008-5041 | — | — | 1.4% | Nov 12, 2008 | Sweex RO002 Router with firmware Ts03-072 has "rdc123" as its default password for the "rdc123" account, which makes it ... |
| CVE-2008-5040 | — | — | 2.6% | Nov 12, 2008 | Graphiks MyForum 1.3 allows remote attackers to bypass authentication and gain administrative access by setting the (1) ... |
| CVE-2008-5039 | — | — | 1.5% | Nov 12, 2008 | Cross-site scripting (XSS) vulnerability in the League module for PHP-Nuke, possibly 2.4, allows remote attackers to inj... |
| CVE-2008-5038 | CRITICAL | 9.8 | 6.2% | Nov 12, 2008 | Use-after-free vulnerability in the NetWare Core Protocol (NCP) feature in Novell eDirectory 8.7.3 SP10 before 8.7.3 SP1... |
| CVE-2008-5037 | — | — | 1.0% | Nov 12, 2008 | SQL injection vulnerability in view.php in ElkaGroup Image Gallery 1.0 allows remote attackers to execute arbitrary SQL ... |
| CVE-2008-5036 | — | — | 41.4% | Nov 10, 2008 | Stack-based buffer overflow in VideoLAN VLC media player 0.9.x before 0.9.6 might allow user-assisted attackers to execu... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now