2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-3833——The generic_file_splice_write function in fs/splice.c in the Linux kernel before 2.6.19 does not properly strip setuid a...
CVE-2008-3832——A certain Fedora patch for the utrace subsystem in the Linux kernel before 2.6.26.5-28 on Fedora 8, and before 2.6.26.5-...
CVE-2008-4404——The IPv6 Neighbor Discovery Protocol (NDP) implementation on IBM zSeries servers does not validate the origin of Neighbo...
CVE-2008-4403——The CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 ...
CVE-2008-4402——Multiple buffer overflows in CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 P...
CVE-2008-3825——pam_krb5 2.2.14 in Red Hat Enterprise Linux (RHEL) 5 and earlier, when the existing_ticket option is enabled, uses incor...
CVE-2008-2476——The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) N...
CVE-2008-2439——Directory traversal vulnerability in the UpdateAgent function in TmListen.exe in the OfficeScanNT Listener service in th...
CVE-2008-2236——Cross-site scripting (XSS) vulnerability in blosxom.cgi in Blosxom before 2.1.2 allows remote attackers to inject arbitr...
CVE-2008-4396——Stack-based buffer overflow in Safer Networking FileAlyzer 1.6.0.0 and 1.6.0.4 beta, and possibly other versions, allows...
CVE-2008-4382——Konqueror in KDE 3.5.9 allows remote attackers to cause a denial of service (application crash) via Javascript that call...
CVE-2008-4381——Microsoft Internet Explorer 7 allows remote attackers to cause a denial of service (application crash) via Javascript th...
CVE-2008-3542——Unspecified vulnerability in HP Insight Diagnostics before 7.9.1.2402 allows remote attackers to read arbitrary files vi...
CVE-2008-3522——Buffer overflow in the jas_stream_printf function in libjasper/base/jas_stream.c in JasPer 1.900.1 might allow context-d...
CVE-2008-3521——Race condition in the jas_stream_tmpfile function in libjasper/base/jas_stream.c in JasPer 1.900.1 allows local users to...
CVE-2008-3520——Multiple integer overflows in JasPer 1.900.1 might allow context-dependent attackers to have an unknown impact via a cra...
CVE-2008-2831——Multiple cross-site scripting (XSS) vulnerabilities in the delegated spam management feature in the Spam Quarantine Mana...
CVE-2008-4380——The web interface in Samsung DVR SHR2040 allows remote attackers to cause a denial of service (crash) via a malformed HT...
CVE-2008-4379——Cross-site scripting (XSS) vulnerability in report.php in Mr. CGI Guy Hot Links SQL-PHP 3.0 and earlier allows remote at...
CVE-2008-4378——SQL injection vulnerability in report.php in Mr. CGI Guy Hot Links SQL-PHP 3.0 and earlier allows remote attackers to ex...
CVE-2008-4377——SQL injection vulnerability in index.asp in Creative Mind Creator CMS 5.0 allows remote attackers to execute arbitrary S...
CVE-2008-4376——SQL injection vulnerability in index.php in Live TV Script allows remote attackers to execute arbitrary SQL commands via...
CVE-2008-4375——SQL injection vulnerability in viewprofile.php in Availscript Classmate Script allows remote attackers to execute arbitr...
CVE-2008-4374——SQL injection vulnerability in index.php in CMS Buzz allows remote attackers to execute arbitrary SQL commands via the i...
CVE-2008-4373——SQL injection vulnerability in job_seeker/applynow.php in AvailScript Job Portal Script allows remote attackers to execu...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now