2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-5030 | — | — | 4.9% | Nov 10, 2008 | Heap-based buffer overflow in the cddb_read_disc_data function in cddb.c in libcdaudio 0.99.12p2 allows remote CDDB serv... |
| CVE-2008-5029 | — | — | 0.5% | Nov 10, 2008 | The __scm_destroy function in net/core/scm.c in the Linux kernel 2.6.27.4, 2.6.26, and earlier makes indirect recursive ... |
| CVE-2008-4387 | — | — | 15.5% | Nov 10, 2008 | Unspecified vulnerability in the Simba MDrmSap ActiveX control in mdrmsap.dll in SAP SAPgui allows remote attackers to e... |
| CVE-2008-5028 | — | — | 1.7% | Nov 10, 2008 | Cross-site request forgery (CSRF) vulnerability in cmd.cgi in (1) Nagios 3.0.5 and (2) op5 Monitor before 4.0.1 allows r... |
| CVE-2008-5027 | — | — | 6.7% | Nov 10, 2008 | The Nagios process in (1) Nagios before 3.0.5 and (2) op5 Monitor before 4.0.1 allows remote authenticated users to bypa... |
| CVE-2008-5026 | — | — | 9.4% | Nov 10, 2008 | Microsoft SharePoint uses URLs with the same hostname and port number for a web site's primary files and individual user... |
| CVE-2008-5011 | — | — | 1.3% | Nov 10, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in IBM Lotus Quickr 8.1 before 8.1.0.2 services for Lotus Domino all... |
| CVE-2008-5010 | — | — | 4.8% | Nov 10, 2008 | in.dhcpd in the DHCP implementation in Sun Solaris 8 through 10, and OpenSolaris before snv_103, allows remote attackers... |
| CVE-2008-5009 | — | — | 0.2% | Nov 10, 2008 | Race condition in the s_xout kernel module in Sun Solstice X.25 9.2, when running on a multiple CPU machine, allows loca... |
| CVE-2008-5008 | — | — | 1.7% | Nov 10, 2008 | Buffer overflow in src/src_sinc.c in Secret Rabbit Code (aka SRC or libsamplerate) before 0.1.4, when "extreme low conve... |
| CVE-2008-5007 | — | — | 0.4% | Nov 10, 2008 | create_lazarus_export_tgz.sh in lazarus 0.9.24 allows local users to overwrite or delete arbitrary files via a symlink a... |
| CVE-2008-5006 | — | — | 2.0% | Nov 10, 2008 | smtp.c in the c-client library in University of Washington IMAP Toolkit 2007b allows remote SMTP servers to cause a deni... |
| CVE-2008-5005 | — | — | 6.4% | Nov 10, 2008 | Multiple stack-based buffer overflows in (1) University of Washington IMAP Toolkit 2002 through 2007c, (2) University of... |
| CVE-2008-5004 | — | — | 1.0% | Nov 10, 2008 | SQL injection vulnerability in genscode.php in myWebland Bloggie Lite 0.0.2 beta allows remote attackers to execute arbi... |
| CVE-2008-5003 | — | — | 1.0% | Nov 10, 2008 | SQL injection vulnerability in ndetail.php in Shahrood allows remote attackers to execute arbitrary SQL commands via the... |
| CVE-2008-5002 | — | — | 40.7% | Nov 10, 2008 | Insecure method vulnerability in the ChilkatCrypt2.ChilkatCrypt2.1 ActiveX control (ChilkatCrypt2.dll 4.3.2.1) in Chilka... |
| CVE-2008-5001 | — | — | 5.6% | Nov 10, 2008 | Multiple stack-based buffer overflows in multiple functions in vncviewer/FileTransfer.cpp in vncviewer for UltraVNC 1.0.... |
| CVE-2008-5000 | — | — | 0.9% | Nov 10, 2008 | SQL injection vulnerability in admin/includes/news.inc.php in PHPX 3.5.16, when magic_quotes_gpc is disabled, allows rem... |
| CVE-2008-4915 | — | — | 0.4% | Nov 10, 2008 | The CPU hardware emulation in VMware Workstation 6.0.5 and earlier and 5.5.8 and earlier; Player 2.0.x through 2.0.5 and... |
| CVE-2008-4831 | — | — | 0.7% | Nov 10, 2008 | Unspecified vulnerability in Adobe ColdFusion 8 and 8.0.1 and ColdFusion MX 7.0.2 allows local users to bypass sandbox r... |
| CVE-2008-4823 | — | — | 4.7% | Nov 10, 2008 | Cross-site scripting (XSS) vulnerability in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to inject a... |
| CVE-2008-4822 | — | — | 5.2% | Nov 10, 2008 | Adobe Flash Player 9.0.124.0 and earlier does not properly interpret policy files, which allows remote attackers to bypa... |
| CVE-2008-4821 | — | — | 5.1% | Nov 10, 2008 | Adobe Flash Player 9.0.124.0 and earlier, when a Mozilla browser is used, does not properly interpret jar: URLs, which a... |
| CVE-2008-4820 | — | — | 5.1% | Nov 10, 2008 | Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player 9.0.124.0 and earlier on Windows all... |
| CVE-2008-4819 | — | — | 5.2% | Nov 10, 2008 | Unspecified vulnerability in Adobe Flash Player 9.0.124.0 and earlier makes it easier for remote attackers to conduct DN... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now