2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-3833 | — | — | 0.4% | Oct 3, 2008 | The generic_file_splice_write function in fs/splice.c in the Linux kernel before 2.6.19 does not properly strip setuid a... |
| CVE-2008-3832 | — | — | 0.8% | Oct 3, 2008 | A certain Fedora patch for the utrace subsystem in the Linux kernel before 2.6.26.5-28 on Fedora 8, and before 2.6.26.5-... |
| CVE-2008-4404 | — | — | 4.3% | Oct 3, 2008 | The IPv6 Neighbor Discovery Protocol (NDP) implementation on IBM zSeries servers does not validate the origin of Neighbo... |
| CVE-2008-4403 | — | — | 3.2% | Oct 3, 2008 | The CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 ... |
| CVE-2008-4402 | — | — | 5.5% | Oct 3, 2008 | Multiple buffer overflows in CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 P... |
| CVE-2008-3825 | — | — | 0.4% | Oct 3, 2008 | pam_krb5 2.2.14 in Red Hat Enterprise Linux (RHEL) 5 and earlier, when the existing_ticket option is enabled, uses incor... |
| CVE-2008-2476 | — | — | 4.6% | Oct 3, 2008 | The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) N... |
| CVE-2008-2439 | — | — | 20.7% | Oct 3, 2008 | Directory traversal vulnerability in the UpdateAgent function in TmListen.exe in the OfficeScanNT Listener service in th... |
| CVE-2008-2236 | — | — | 1.3% | Oct 3, 2008 | Cross-site scripting (XSS) vulnerability in blosxom.cgi in Blosxom before 2.1.2 allows remote attackers to inject arbitr... |
| CVE-2008-4396 | — | — | 4.1% | Oct 2, 2008 | Stack-based buffer overflow in Safer Networking FileAlyzer 1.6.0.0 and 1.6.0.4 beta, and possibly other versions, allows... |
| CVE-2008-4382 | — | — | 1.1% | Oct 2, 2008 | Konqueror in KDE 3.5.9 allows remote attackers to cause a denial of service (application crash) via Javascript that call... |
| CVE-2008-4381 | — | — | 18.4% | Oct 2, 2008 | Microsoft Internet Explorer 7 allows remote attackers to cause a denial of service (application crash) via Javascript th... |
| CVE-2008-3542 | — | — | 3.5% | Oct 2, 2008 | Unspecified vulnerability in HP Insight Diagnostics before 7.9.1.2402 allows remote attackers to read arbitrary files vi... |
| CVE-2008-3522 | — | — | 4.5% | Oct 2, 2008 | Buffer overflow in the jas_stream_printf function in libjasper/base/jas_stream.c in JasPer 1.900.1 might allow context-d... |
| CVE-2008-3521 | — | — | 0.5% | Oct 2, 2008 | Race condition in the jas_stream_tmpfile function in libjasper/base/jas_stream.c in JasPer 1.900.1 allows local users to... |
| CVE-2008-3520 | — | — | 3.2% | Oct 2, 2008 | Multiple integer overflows in JasPer 1.900.1 might allow context-dependent attackers to have an unknown impact via a cra... |
| CVE-2008-2831 | — | — | 1.0% | Oct 2, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in the delegated spam management feature in the Spam Quarantine Mana... |
| CVE-2008-4380 | — | — | 3.7% | Oct 1, 2008 | The web interface in Samsung DVR SHR2040 allows remote attackers to cause a denial of service (crash) via a malformed HT... |
| CVE-2008-4379 | — | — | 1.5% | Oct 1, 2008 | Cross-site scripting (XSS) vulnerability in report.php in Mr. CGI Guy Hot Links SQL-PHP 3.0 and earlier allows remote at... |
| CVE-2008-4378 | — | — | 1.0% | Oct 1, 2008 | SQL injection vulnerability in report.php in Mr. CGI Guy Hot Links SQL-PHP 3.0 and earlier allows remote attackers to ex... |
| CVE-2008-4377 | — | — | 1.1% | Oct 1, 2008 | SQL injection vulnerability in index.asp in Creative Mind Creator CMS 5.0 allows remote attackers to execute arbitrary S... |
| CVE-2008-4376 | — | — | 1.0% | Oct 1, 2008 | SQL injection vulnerability in index.php in Live TV Script allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2008-4375 | — | — | 1.0% | Oct 1, 2008 | SQL injection vulnerability in viewprofile.php in Availscript Classmate Script allows remote attackers to execute arbitr... |
| CVE-2008-4374 | — | — | 1.0% | Oct 1, 2008 | SQL injection vulnerability in index.php in CMS Buzz allows remote attackers to execute arbitrary SQL commands via the i... |
| CVE-2008-4373 | — | — | 1.0% | Oct 1, 2008 | SQL injection vulnerability in job_seeker/applynow.php in AvailScript Job Portal Script allows remote attackers to execu... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now