2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-4589——Heap-based buffer overflow in the tvtumin.sys kernel driver in Lenovo Rescue and Recovery 4.20, including 4.20.0511 and ...
CVE-2008-4588——Stack-based buffer overflow in the FTP server in Etype Eserv 3.x, possibly 3.26, allows remote attackers to cause a deni...
CVE-2008-4587——Insecure method vulnerability in the MSVNClientDownloadManager61Lib.DownloadManager.1 ActiveX control (ISDM.exe 6.1.100....
CVE-2008-4586——Insecure method vulnerability in the MVSNCLientWebAgent61.WebAgent.1 ActiveX control (isusweb.dll 6.1.100.61372) in Macr...
CVE-2008-4585——Belong Software Site Builder 0.1 beta allows remote attackers to bypass intended access restrictions and perform adminis...
CVE-2008-4584——Insecure method vulnerability in Chilkat Mail 7.8 ActiveX control (ChilkatCert.dll) allows remote attackers to overwrite...
CVE-2008-4583——Insecure method vulnerability in the Chilkat FTP 2.0 ActiveX component (ChilkatCert.dll) allows remote attackers to over...
CVE-2008-4582——Mozilla Firefox 3.0.1 through 3.0.3, Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13, when running on Windo...
CVE-2008-4581——The Editor in IBM ENOVIA SmarTeam 5 before release 18 SP5, and release 19 before SP01, allows remote authenticated users...
CVE-2008-4580——fence_manual, as used in fence 2.02.00-r1 and possibly cman, allows local users to modify arbitrary files via a symlink ...
CVE-2008-4579——The (1) fence_apc and (2) fence_apc_snmp programs, as used in (a) fence 2.02.00-r1 and possibly (b) cman, when running i...
CVE-2008-4578——The ACL plugin in Dovecot before 1.1.4 allows attackers to bypass intended access restrictions by using the "k" right to...
CVE-2008-4576——sctp in Linux kernel before 2.6.25.18 allows remote attackers to cause a denial of service (OOPS) via an INIT-ACK that s...
CVE-2008-4575——Buffer overflow in the DoCommand function in jhead before 2.84 might allow context-dependent attackers to cause a denial...
CVE-2008-4554——The do_splice_from function in fs/splice.c in the Linux kernel before 2.6.27 does not reject file descriptors that have ...
CVE-2008-4553——qemu-make-debian-root in qemu 0.9.1-5 on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink ...
CVE-2008-4574——SQL injection vulnerability in default.asp in Ayco Okul Portali allows remote attackers to execute arbitrary SQL command...
CVE-2008-4573——SQL injection vulnerability in kategori.asp in MunzurSoft Wep Portal W3 allows remote attackers to execute arbitrary SQL...
CVE-2008-4572——GuildFTPd 0.999.14, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possib...
CVE-2008-4571——Cross-site scripting (XSS) vulnerability in the LiveSearch module in Plone before 3.0.4 allows remote attackers to injec...
CVE-2008-4570——SQL injection vulnerability in index.php in Real Estate Classifieds allows remote attackers to execute arbitrary SQL com...
CVE-2008-4569——SQL injection vulnerability in xlacomments.asp in XIGLA Software Absolute Poll Manager XE 4.1 allows remote attackers to...
CVE-2008-4038——Buffer underflow in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server ...
CVE-2008-4023——Active Directory in Microsoft Windows 2000 SP4 does not properly allocate memory for (1) LDAP and (2) LDAPS requests, wh...
CVE-2008-4020——Cross-site scripting (XSS) vulnerability in Microsoft Office XP SP3 allows remote attackers to inject arbitrary web scri...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now