2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-4575 | — | — | 1.7% | Oct 15, 2008 | Buffer overflow in the DoCommand function in jhead before 2.84 might allow context-dependent attackers to cause a denial... |
| CVE-2008-4554 | — | — | 0.4% | Oct 15, 2008 | The do_splice_from function in fs/splice.c in the Linux kernel before 2.6.27 does not reject file descriptors that have ... |
| CVE-2008-4553 | — | — | 0.5% | Oct 15, 2008 | qemu-make-debian-root in qemu 0.9.1-5 on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink ... |
| CVE-2008-4574 | — | — | 1.0% | Oct 15, 2008 | SQL injection vulnerability in default.asp in Ayco Okul Portali allows remote attackers to execute arbitrary SQL command... |
| CVE-2008-4573 | — | — | 1.0% | Oct 15, 2008 | SQL injection vulnerability in kategori.asp in MunzurSoft Wep Portal W3 allows remote attackers to execute arbitrary SQL... |
| CVE-2008-4572 | — | — | 60.7% | Oct 15, 2008 | GuildFTPd 0.999.14, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possib... |
| CVE-2008-4571 | — | — | 1.1% | Oct 15, 2008 | Cross-site scripting (XSS) vulnerability in the LiveSearch module in Plone before 3.0.4 allows remote attackers to injec... |
| CVE-2008-4570 | — | — | 1.0% | Oct 15, 2008 | SQL injection vulnerability in index.php in Real Estate Classifieds allows remote attackers to execute arbitrary SQL com... |
| CVE-2008-4569 | — | — | 1.0% | Oct 15, 2008 | SQL injection vulnerability in xlacomments.asp in XIGLA Software Absolute Poll Manager XE 4.1 allows remote attackers to... |
| CVE-2008-4038 | — | — | 39.2% | Oct 15, 2008 | Buffer underflow in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server ... |
| CVE-2008-4036 | HIGH | 8.4 | 1.5% | Oct 15, 2008 | Integer overflow in Memory Manager in Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and... |
| CVE-2008-4023 | — | — | 39.2% | Oct 15, 2008 | Active Directory in Microsoft Windows 2000 SP4 does not properly allocate memory for (1) LDAP and (2) LDAPS requests, wh... |
| CVE-2008-4020 | — | — | 24.4% | Oct 15, 2008 | Cross-site scripting (XSS) vulnerability in Microsoft Office XP SP3 allows remote attackers to inject arbitrary web scri... |
| CVE-2008-4019 | — | — | 34.4% | Oct 15, 2008 | Integer overflow in the REPT function in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Of... |
| CVE-2008-3479 | — | — | 45.4% | Oct 15, 2008 | Heap-based buffer overflow in the Microsoft Message Queuing (MSMQ) service (mqsvc.exe) in Microsoft Windows 2000 SP4 all... |
| CVE-2008-3477 | — | — | 35.7% | Oct 15, 2008 | Microsoft Excel 2000 SP3, 2002 SP3, and 2003 SP2 and SP3 does not properly validate data in the VBA Performance Cache wh... |
| CVE-2008-3476 | — | — | 31.1% | Oct 15, 2008 | Microsoft Internet Explorer 5.01 SP4 and 6 does not properly handle errors associated with access to uninitialized memor... |
| CVE-2008-3475 | HIGH | 8.8 | 39.9% | Oct 15, 2008 | Microsoft Internet Explorer 6 does not properly handle errors related to using the componentFromPoint method on xml obje... |
| CVE-2008-3474 | MEDIUM | 6.5 | 28.0% | Oct 15, 2008 | Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, whi... |
| CVE-2008-3473 | — | — | 31.7% | Oct 15, 2008 | Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, whi... |
| CVE-2008-3472 | — | — | 32.6% | Oct 15, 2008 | Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, whi... |
| CVE-2008-3471 | — | — | 52.3% | Oct 15, 2008 | Stack-based buffer overflow in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel... |
| CVE-2008-3466 | — | — | 77.7% | Oct 15, 2008 | Microsoft Host Integration Server (HIS) 2000, 2004, and 2006 does not limit RPC access to administrative functions, whic... |
| CVE-2008-3464 | — | — | 4.0% | Oct 15, 2008 | afd.sys in the Ancillary Function Driver (AFD) component in Microsoft Windows XP SP2 and SP3 and Windows Server 2003 SP1... |
| CVE-2008-2252 | — | — | 1.9% | Oct 15, 2008 | The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 d... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now