2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-3965 | — | — | 1.3% | Sep 11, 2008 | SQL injection vulnerability in misc.php in MyBB (aka MyBulletinBoard) before 1.4.1 allows remote attackers to execute ar... |
| CVE-2008-3964 | — | — | 3.3% | Sep 11, 2008 | Multiple off-by-one errors in libpng before 1.2.32beta01, and 1.4 before 1.4.0beta34, allow context-dependent attackers ... |
| CVE-2008-3963 | — | — | 6.5% | Sep 11, 2008 | MySQL 5.0 before 5.0.66, 5.1 before 5.1.26, and 6.0 before 6.0.6 does not properly handle a b'' (b single-quote single-q... |
| CVE-2008-3962 | — | — | 2.0% | Sep 11, 2008 | The from_format function in ssmtp.c in ssmtp 2.61 and 2.62, in certain configurations, uses uninitialized memory for the... |
| CVE-2008-3960 | — | — | 1.7% | Sep 11, 2008 | Unspecified vulnerability in the JDBC Applet Server Service (aka db2jds) in IBM DB2 UDB 8 before Fixpak 17 allows remote... |
| CVE-2008-3959 | — | — | 2.2% | Sep 11, 2008 | IBM DB2 UDB 8.1 before FixPak 16, 8.2 before FixPak 9, and 9.1 before FixPak 4a allows remote attackers to cause a denia... |
| CVE-2008-3958 | — | — | 1.6% | Sep 11, 2008 | IBM DB2 UDB 8 before Fixpak 17 allows remote attackers to cause a denial of service (instance crash) via a crafted CONNE... |
| CVE-2008-3957 | — | — | 17.8% | Sep 11, 2008 | The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrar... |
| CVE-2008-3956 | — | — | 13.4% | Sep 11, 2008 | orgchart.exe in Microsoft Organization Chart 2.00 allows user-assisted attackers to cause a denial of service (applicati... |
| CVE-2008-3955 | — | — | 1.1% | Sep 11, 2008 | SQL injection vulnerability in index.php in Masir Camp E-Shop Module 3.0 and earlier allows remote attackers to execute ... |
| CVE-2008-3954 | — | — | 1.2% | Sep 11, 2008 | SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange allows remote attackers to execute ar... |
| CVE-2008-3953 | — | — | 1.0% | Sep 11, 2008 | SQL injection vulnerability in keyword_search_action.php in Vastal I-Tech Shaadi Zone 1.0.9 allows remote attackers to e... |
| CVE-2008-3952 | — | — | 1.0% | Sep 11, 2008 | SQL injection vulnerability in questions.php in EsFaq 2.0 allows remote attackers to execute arbitrary SQL commands via ... |
| CVE-2008-3951 | — | — | 1.1% | Sep 11, 2008 | SQL injection vulnerability in view_ann.php in Vastal I-Tech Agent Zone (aka The Real Estate Script) allows remote attac... |
| CVE-2008-3915 | — | — | 4.4% | Sep 11, 2008 | Buffer overflow in nfsd in the Linux kernel before 2.6.26.4, when NFSv4 is enabled, allows remote attackers to have an u... |
| CVE-2008-3914 | — | — | 3.6% | Sep 11, 2008 | Multiple unspecified vulnerabilities in ClamAV before 0.94 have unknown impact and attack vectors related to file descri... |
| CVE-2008-3913 | — | — | 3.1% | Sep 11, 2008 | Multiple memory leaks in freshclam/manager.c in ClamAV before 0.94 might allow attackers to cause a denial of service (m... |
| CVE-2008-3912 | — | — | 3.1% | Sep 11, 2008 | libclamav in ClamAV before 0.94 allows attackers to cause a denial of service (NULL pointer dereference and application ... |
| CVE-2008-3636 | — | — | 0.4% | Sep 11, 2008 | Integer overflow in the IopfCompleteRequest API in the kernel in Microsoft Windows 2000, XP, Server 2003, and Vista allo... |
| CVE-2008-3635 | — | — | 6.1% | Sep 11, 2008 | Stack-based buffer overflow in QuickTimeInternetExtras.qtx in an unspecified third-party Indeo v3.2 (aka IV32) codec for... |
| CVE-2008-3634 | — | — | 1.7% | Sep 11, 2008 | Apple iTunes before 8.0 on Mac OS X 10.4.11, when iTunes Music Sharing is enabled but blocked by the host-based firewall... |
| CVE-2008-3632 | — | — | 6.0% | Sep 11, 2008 | Use-after-free vulnerability in WebKit in Apple iPod touch 1.1 through 2.0.2, and iPhone 1.0 through 2.0.2, allows remot... |
| CVE-2008-3631 | — | — | 1.9% | Sep 11, 2008 | Application Sandbox in Apple iPod touch 2.0 through 2.0.2, and iPhone 2.0 through 2.0.2, does not properly isolate third... |
| CVE-2008-3630 | — | — | 1.6% | Sep 11, 2008 | mDNSResponder in Apple Bonjour for Windows before 1.0.5, when an application uses the Bonjour API for unicast DNS, does ... |
| CVE-2008-3629 | — | — | 1.8% | Sep 11, 2008 | Apple QuickTime before 7.5.5 allows remote attackers to cause a denial of service (application crash) via a crafted PICT... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now