2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-4575——Buffer overflow in the DoCommand function in jhead before 2.84 might allow context-dependent attackers to cause a denial...
CVE-2008-4554——The do_splice_from function in fs/splice.c in the Linux kernel before 2.6.27 does not reject file descriptors that have ...
CVE-2008-4553——qemu-make-debian-root in qemu 0.9.1-5 on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink ...
CVE-2008-4574——SQL injection vulnerability in default.asp in Ayco Okul Portali allows remote attackers to execute arbitrary SQL command...
CVE-2008-4573——SQL injection vulnerability in kategori.asp in MunzurSoft Wep Portal W3 allows remote attackers to execute arbitrary SQL...
CVE-2008-4572——GuildFTPd 0.999.14, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possib...
CVE-2008-4571——Cross-site scripting (XSS) vulnerability in the LiveSearch module in Plone before 3.0.4 allows remote attackers to injec...
CVE-2008-4570——SQL injection vulnerability in index.php in Real Estate Classifieds allows remote attackers to execute arbitrary SQL com...
CVE-2008-4569——SQL injection vulnerability in xlacomments.asp in XIGLA Software Absolute Poll Manager XE 4.1 allows remote attackers to...
CVE-2008-4038——Buffer underflow in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server ...
CVE-2008-4036HIGH8.4Integer overflow in Memory Manager in Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and...
CVE-2008-4023——Active Directory in Microsoft Windows 2000 SP4 does not properly allocate memory for (1) LDAP and (2) LDAPS requests, wh...
CVE-2008-4020——Cross-site scripting (XSS) vulnerability in Microsoft Office XP SP3 allows remote attackers to inject arbitrary web scri...
CVE-2008-4019——Integer overflow in the REPT function in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Of...
CVE-2008-3479——Heap-based buffer overflow in the Microsoft Message Queuing (MSMQ) service (mqsvc.exe) in Microsoft Windows 2000 SP4 all...
CVE-2008-3477——Microsoft Excel 2000 SP3, 2002 SP3, and 2003 SP2 and SP3 does not properly validate data in the VBA Performance Cache wh...
CVE-2008-3476——Microsoft Internet Explorer 5.01 SP4 and 6 does not properly handle errors associated with access to uninitialized memor...
CVE-2008-3475HIGH8.8Microsoft Internet Explorer 6 does not properly handle errors related to using the componentFromPoint method on xml obje...
CVE-2008-3474MEDIUM6.5Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, whi...
CVE-2008-3473——Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, whi...
CVE-2008-3472——Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, whi...
CVE-2008-3471——Stack-based buffer overflow in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel...
CVE-2008-3466——Microsoft Host Integration Server (HIS) 2000, 2004, and 2006 does not limit RPC access to administrative functions, whic...
CVE-2008-3464——afd.sys in the Ancillary Function Driver (AFD) component in Microsoft Windows XP SP2 and SP3 and Windows Server 2003 SP1...
CVE-2008-2252——The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 d...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now