2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-3965SQL injection vulnerability in misc.php in MyBB (aka MyBulletinBoard) before 1.4.1 allows remote attackers to execute ar...
CVE-2008-3964Multiple off-by-one errors in libpng before 1.2.32beta01, and 1.4 before 1.4.0beta34, allow context-dependent attackers ...
CVE-2008-3963MySQL 5.0 before 5.0.66, 5.1 before 5.1.26, and 6.0 before 6.0.6 does not properly handle a b'' (b single-quote single-q...
CVE-2008-3962The from_format function in ssmtp.c in ssmtp 2.61 and 2.62, in certain configurations, uses uninitialized memory for the...
CVE-2008-3960Unspecified vulnerability in the JDBC Applet Server Service (aka db2jds) in IBM DB2 UDB 8 before Fixpak 17 allows remote...
CVE-2008-3959IBM DB2 UDB 8.1 before FixPak 16, 8.2 before FixPak 9, and 9.1 before FixPak 4a allows remote attackers to cause a denia...
CVE-2008-3958IBM DB2 UDB 8 before Fixpak 17 allows remote attackers to cause a denial of service (instance crash) via a crafted CONNE...
CVE-2008-3957The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrar...
CVE-2008-3956orgchart.exe in Microsoft Organization Chart 2.00 allows user-assisted attackers to cause a denial of service (applicati...
CVE-2008-3955SQL injection vulnerability in index.php in Masir Camp E-Shop Module 3.0 and earlier allows remote attackers to execute ...
CVE-2008-3954SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange allows remote attackers to execute ar...
CVE-2008-3953SQL injection vulnerability in keyword_search_action.php in Vastal I-Tech Shaadi Zone 1.0.9 allows remote attackers to e...
CVE-2008-3952SQL injection vulnerability in questions.php in EsFaq 2.0 allows remote attackers to execute arbitrary SQL commands via ...
CVE-2008-3951SQL injection vulnerability in view_ann.php in Vastal I-Tech Agent Zone (aka The Real Estate Script) allows remote attac...
CVE-2008-3915Buffer overflow in nfsd in the Linux kernel before 2.6.26.4, when NFSv4 is enabled, allows remote attackers to have an u...
CVE-2008-3914Multiple unspecified vulnerabilities in ClamAV before 0.94 have unknown impact and attack vectors related to file descri...
CVE-2008-3913Multiple memory leaks in freshclam/manager.c in ClamAV before 0.94 might allow attackers to cause a denial of service (m...
CVE-2008-3912libclamav in ClamAV before 0.94 allows attackers to cause a denial of service (NULL pointer dereference and application ...
CVE-2008-3636Integer overflow in the IopfCompleteRequest API in the kernel in Microsoft Windows 2000, XP, Server 2003, and Vista allo...
CVE-2008-3635Stack-based buffer overflow in QuickTimeInternetExtras.qtx in an unspecified third-party Indeo v3.2 (aka IV32) codec for...
CVE-2008-3634Apple iTunes before 8.0 on Mac OS X 10.4.11, when iTunes Music Sharing is enabled but blocked by the host-based firewall...
CVE-2008-3632Use-after-free vulnerability in WebKit in Apple iPod touch 1.1 through 2.0.2, and iPhone 1.0 through 2.0.2, allows remot...
CVE-2008-3631Application Sandbox in Apple iPod touch 2.0 through 2.0.2, and iPhone 2.0 through 2.0.2, does not properly isolate third...
CVE-2008-3630mDNSResponder in Apple Bonjour for Windows before 1.0.5, when an application uses the Bonjour API for unicast DNS, does ...
CVE-2008-3629Apple QuickTime before 7.5.5 allows remote attackers to cause a denial of service (application crash) via a crafted PICT...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now