2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-3833The generic_file_splice_write function in fs/splice.c in the Linux kernel before 2.6.19 does not properly strip setuid a...
CVE-2008-3832A certain Fedora patch for the utrace subsystem in the Linux kernel before 2.6.26.5-28 on Fedora 8, and before 2.6.26.5-...
CVE-2008-4404The IPv6 Neighbor Discovery Protocol (NDP) implementation on IBM zSeries servers does not validate the origin of Neighbo...
CVE-2008-4403The CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 ...
CVE-2008-4402Multiple buffer overflows in CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 P...
CVE-2008-3825pam_krb5 2.2.14 in Red Hat Enterprise Linux (RHEL) 5 and earlier, when the existing_ticket option is enabled, uses incor...
CVE-2008-2476The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) N...
CVE-2008-2439Directory traversal vulnerability in the UpdateAgent function in TmListen.exe in the OfficeScanNT Listener service in th...
CVE-2008-2236Cross-site scripting (XSS) vulnerability in blosxom.cgi in Blosxom before 2.1.2 allows remote attackers to inject arbitr...
CVE-2008-4396Stack-based buffer overflow in Safer Networking FileAlyzer 1.6.0.0 and 1.6.0.4 beta, and possibly other versions, allows...
CVE-2008-4382Konqueror in KDE 3.5.9 allows remote attackers to cause a denial of service (application crash) via Javascript that call...
CVE-2008-4381Microsoft Internet Explorer 7 allows remote attackers to cause a denial of service (application crash) via Javascript th...
CVE-2008-3542Unspecified vulnerability in HP Insight Diagnostics before 7.9.1.2402 allows remote attackers to read arbitrary files vi...
CVE-2008-3522Buffer overflow in the jas_stream_printf function in libjasper/base/jas_stream.c in JasPer 1.900.1 might allow context-d...
CVE-2008-3521Race condition in the jas_stream_tmpfile function in libjasper/base/jas_stream.c in JasPer 1.900.1 allows local users to...
CVE-2008-3520Multiple integer overflows in JasPer 1.900.1 might allow context-dependent attackers to have an unknown impact via a cra...
CVE-2008-2831Multiple cross-site scripting (XSS) vulnerabilities in the delegated spam management feature in the Spam Quarantine Mana...
CVE-2008-4380The web interface in Samsung DVR SHR2040 allows remote attackers to cause a denial of service (crash) via a malformed HT...
CVE-2008-4379Cross-site scripting (XSS) vulnerability in report.php in Mr. CGI Guy Hot Links SQL-PHP 3.0 and earlier allows remote at...
CVE-2008-4378SQL injection vulnerability in report.php in Mr. CGI Guy Hot Links SQL-PHP 3.0 and earlier allows remote attackers to ex...
CVE-2008-4377SQL injection vulnerability in index.asp in Creative Mind Creator CMS 5.0 allows remote attackers to execute arbitrary S...
CVE-2008-4376SQL injection vulnerability in index.php in Live TV Script allows remote attackers to execute arbitrary SQL commands via...
CVE-2008-4375SQL injection vulnerability in viewprofile.php in Availscript Classmate Script allows remote attackers to execute arbitr...
CVE-2008-4374SQL injection vulnerability in index.php in CMS Buzz allows remote attackers to execute arbitrary SQL commands via the i...
CVE-2008-4373SQL injection vulnerability in job_seeker/applynow.php in AvailScript Job Portal Script allows remote attackers to execu...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now