2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-4597 | — | — | 1.3% | Oct 17, 2008 | Shindig-Integrator 5.x, a module for Drupal, does not properly restrict generated page access, which allows remote attac... |
| CVE-2008-4596 | — | — | 1.0% | Oct 17, 2008 | Cross-site scripting (XSS) vulnerability in Shindig-Integrator 5.x, a module for Drupal, allows remote authenticated use... |
| CVE-2008-4595 | — | — | 1.5% | Oct 17, 2008 | Multiple unspecified vulnerabilities in Slaytanic Scripts Content Plus 2.1.1 have unknown impact and remote attack vecto... |
| CVE-2008-4594 | — | — | 1.5% | Oct 17, 2008 | Unspecified vulnerability in the SNMPv3 component in Linksys WAP4400N firmware 1.2.14 on the Marvell Semiconductor 88W83... |
| CVE-2008-4593 | — | — | 0.3% | Oct 17, 2008 | Apple iPhone 2.1 with firmware 5F136, when Require Passcode is enabled and Show SMS Preview is disabled, allows physical... |
| CVE-2008-4412 | — | — | 2.4% | Oct 17, 2008 | Unspecified vulnerability in HP Systems Insight Manager (SIM) before 5.2 Update 2 (C.05.02.02.00) allows remote attacker... |
| CVE-2008-4473 | — | — | 9.0% | Oct 17, 2008 | Multiple heap-based buffer overflows in Adobe Flash CS3 Professional on Windows and Flash MX 2004 allow remote attackers... |
| CVE-2008-4401 | — | — | 7.1% | Oct 17, 2008 | ActionScript in Adobe Flash Player 9.0.124.0 and earlier does not require user interaction in conjunction with (1) the F... |
| CVE-2008-4592 | — | — | 4.0% | Oct 16, 2008 | Directory traversal vulnerability in index.php in Sports Clubs Web Panel 0.0.1 allows remote attackers to include and ex... |
| CVE-2008-4591 | — | — | 1.5% | Oct 16, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in admin/include/isadmin.inc.php in PhpWebGallery 1.3.4 allow remote... |
| CVE-2008-4590 | — | — | 1.0% | Oct 16, 2008 | Multiple SQL injection vulnerabilities in Stash 1.0.3 allow remote attackers to execute arbitrary SQL commands via (1) t... |
| CVE-2008-4589 | — | — | 0.5% | Oct 15, 2008 | Heap-based buffer overflow in the tvtumin.sys kernel driver in Lenovo Rescue and Recovery 4.20, including 4.20.0511 and ... |
| CVE-2008-4588 | — | — | 6.8% | Oct 15, 2008 | Stack-based buffer overflow in the FTP server in Etype Eserv 3.x, possibly 3.26, allows remote attackers to cause a deni... |
| CVE-2008-4587 | — | — | 10.5% | Oct 15, 2008 | Insecure method vulnerability in the MSVNClientDownloadManager61Lib.DownloadManager.1 ActiveX control (ISDM.exe 6.1.100.... |
| CVE-2008-4586 | — | — | 5.2% | Oct 15, 2008 | Insecure method vulnerability in the MVSNCLientWebAgent61.WebAgent.1 ActiveX control (isusweb.dll 6.1.100.61372) in Macr... |
| CVE-2008-4585 | — | — | 1.4% | Oct 15, 2008 | Belong Software Site Builder 0.1 beta allows remote attackers to bypass intended access restrictions and perform adminis... |
| CVE-2008-4584 | — | — | 4.7% | Oct 15, 2008 | Insecure method vulnerability in Chilkat Mail 7.8 ActiveX control (ChilkatCert.dll) allows remote attackers to overwrite... |
| CVE-2008-4583 | — | — | 5.9% | Oct 15, 2008 | Insecure method vulnerability in the Chilkat FTP 2.0 ActiveX component (ChilkatCert.dll) allows remote attackers to over... |
| CVE-2008-4582 | — | — | 10.2% | Oct 15, 2008 | Mozilla Firefox 3.0.1 through 3.0.3, Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13, when running on Windo... |
| CVE-2008-4581 | — | — | 1.0% | Oct 15, 2008 | The Editor in IBM ENOVIA SmarTeam 5 before release 18 SP5, and release 19 before SP01, allows remote authenticated users... |
| CVE-2008-4580 | — | — | 0.4% | Oct 15, 2008 | fence_manual, as used in fence 2.02.00-r1 and possibly cman, allows local users to modify arbitrary files via a symlink ... |
| CVE-2008-4579 | — | — | 0.3% | Oct 15, 2008 | The (1) fence_apc and (2) fence_apc_snmp programs, as used in (a) fence 2.02.00-r1 and possibly (b) cman, when running i... |
| CVE-2008-4578 | — | — | 1.7% | Oct 15, 2008 | The ACL plugin in Dovecot before 1.1.4 allows attackers to bypass intended access restrictions by using the "k" right to... |
| CVE-2008-4577 | HIGH | 7.5 | 2.3% | Oct 15, 2008 | The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows... |
| CVE-2008-4576 | — | — | 3.7% | Oct 15, 2008 | sctp in Linux kernel before 2.6.25.18 allows remote attackers to cause a denial of service (OOPS) via an INIT-ACK that s... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now