2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-3971Heap-based buffer overflow in the open_man_file function in callbacks.c in gmanedit 0.4.1 allows remote attackers to exe...
CVE-2008-3970pam_mount 0.10 through 0.45, when luserconf is enabled, does not verify mountpoint and source ownership before mounting ...
CVE-2008-3969Multiple unspecified vulnerabilities in BitlBee before 1.2.3 allow remote attackers to "overwrite" and "hijack" existing...
CVE-2008-3968Cross-site scripting (XSS) vulnerability in userlist.php in PunBB before 1.2.20 allows remote attackers to inject arbitr...
CVE-2008-3967moderation.php in MyBB (aka MyBulletinBoard) before 1.4.1 does not properly check for moderator privileges, which has un...
CVE-2008-3966Multiple cross-site scripting (XSS) vulnerabilities in MyBB (aka MyBulletinBoard) before 1.4.1 allow remote attackers to...
CVE-2008-3965SQL injection vulnerability in misc.php in MyBB (aka MyBulletinBoard) before 1.4.1 allows remote attackers to execute ar...
CVE-2008-3964Multiple off-by-one errors in libpng before 1.2.32beta01, and 1.4 before 1.4.0beta34, allow context-dependent attackers ...
CVE-2008-3963MySQL 5.0 before 5.0.66, 5.1 before 5.1.26, and 6.0 before 6.0.6 does not properly handle a b'' (b single-quote single-q...
CVE-2008-3962The from_format function in ssmtp.c in ssmtp 2.61 and 2.62, in certain configurations, uses uninitialized memory for the...
CVE-2008-3960Unspecified vulnerability in the JDBC Applet Server Service (aka db2jds) in IBM DB2 UDB 8 before Fixpak 17 allows remote...
CVE-2008-3959IBM DB2 UDB 8.1 before FixPak 16, 8.2 before FixPak 9, and 9.1 before FixPak 4a allows remote attackers to cause a denia...
CVE-2008-3958IBM DB2 UDB 8 before Fixpak 17 allows remote attackers to cause a denial of service (instance crash) via a crafted CONNE...
CVE-2008-3957The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrar...
CVE-2008-3956orgchart.exe in Microsoft Organization Chart 2.00 allows user-assisted attackers to cause a denial of service (applicati...
CVE-2008-3955SQL injection vulnerability in index.php in Masir Camp E-Shop Module 3.0 and earlier allows remote attackers to execute ...
CVE-2008-3954SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange allows remote attackers to execute ar...
CVE-2008-3953SQL injection vulnerability in keyword_search_action.php in Vastal I-Tech Shaadi Zone 1.0.9 allows remote attackers to e...
CVE-2008-3952SQL injection vulnerability in questions.php in EsFaq 2.0 allows remote attackers to execute arbitrary SQL commands via ...
CVE-2008-3951SQL injection vulnerability in view_ann.php in Vastal I-Tech Agent Zone (aka The Real Estate Script) allows remote attac...
CVE-2008-3915Buffer overflow in nfsd in the Linux kernel before 2.6.26.4, when NFSv4 is enabled, allows remote attackers to have an u...
CVE-2008-3914Multiple unspecified vulnerabilities in ClamAV before 0.94 have unknown impact and attack vectors related to file descri...
CVE-2008-3913Multiple memory leaks in freshclam/manager.c in ClamAV before 0.94 might allow attackers to cause a denial of service (m...
CVE-2008-3912libclamav in ClamAV before 0.94 allows attackers to cause a denial of service (NULL pointer dereference and application ...
CVE-2008-3636Integer overflow in the IopfCompleteRequest API in the kernel in Microsoft Windows 2000, XP, Server 2003, and Vista allo...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now