2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-3702 | — | — | 9.7% | Aug 15, 2008 | Multiple stack-based buffer overflows in the Animation GIF ActiveX control in JComSoft AniGIF.ocx 1.12 and 2.47, as used... |
| CVE-2008-3701 | — | — | 1.9% | Aug 15, 2008 | SQL injection vulnerability in staff/index.php in Kayako SupportSuite 3.20.02 and earlier allows remote authenticated us... |
| CVE-2008-3700 | — | — | 4.1% | Aug 15, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in Kayako SupportSuite 3.20.02 and earlier allow remote attackers to... |
| CVE-2008-3660 | — | — | 3.3% | Aug 15, 2008 | PHP 4.4.x before 4.4.9, and 5.x through 5.2.6, when used as a FastCGI module, allows remote attackers to cause a denial ... |
| CVE-2008-3658 | — | — | 6.8% | Aug 15, 2008 | Buffer overflow in the imageloadfont function in ext/gd/gd.c in PHP 4.4.x before 4.4.9 and PHP 5.2 before 5.2.6-r6 allow... |
| CVE-2008-3659 | — | — | 6.0% | Aug 15, 2008 | Buffer overflow in the memnstr function in PHP 4.4.x before 4.4.9 and PHP 5.6 through 5.2.6 allows context-dependent att... |
| CVE-2008-3443 | — | — | 15.7% | Aug 14, 2008 | The regular expression engine (regex.c) in Ruby 1.8.5 and earlier, 1.8.6 through 1.8.6-p286, 1.8.7 through 1.8.7-p71, an... |
| CVE-2008-3699 | — | — | 0.4% | Aug 14, 2008 | The MagnatuneBrowser::listDownloadComplete function in magnatunebrowser/magnatunebrowser.cpp in Amarok before 1.4.10 all... |
| CVE-2008-3686 | — | — | 0.5% | Aug 14, 2008 | The rt6_fill_node function in net/ipv6/route.c in Linux kernel 2.6.26-rc4, 2.6.26.2, and possibly other 2.6.26 versions,... |
| CVE-2008-3687 | — | — | 2.9% | Aug 14, 2008 | Heap-based buffer overflow in the flask_security_label function in Xen 3.3, when compiled with the XSM:FLASK module, all... |
| CVE-2008-2940 | — | — | 0.4% | Aug 14, 2008 | The alert-mailing implementation in HP Linux Imaging and Printing (HPLIP) 1.6.7 allows local users to gain privileges an... |
| CVE-2008-3683 | — | — | 2.5% | Aug 14, 2008 | Unspecified vulnerability in the FTP subsystem in Sun Java System Web Proxy Server 4.0 through 4.0.5 before SP6 allows r... |
| CVE-2008-2941 | — | — | 0.5% | Aug 14, 2008 | The hpssd message parser in hpssd.py in HP Linux Imaging and Printing (HPLIP) 1.6.7 allows local users to cause a denial... |
| CVE-2008-3682 | — | — | 1.9% | Aug 14, 2008 | SQL injection vulnerability in dpage.php in YPN PHP Realty allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2008-3681 | — | — | 9.4% | Aug 14, 2008 | components/com_user/models/reset.php in Joomla! 1.5 through 1.5.5 does not properly validate reset tokens, which allows ... |
| CVE-2008-3680 | — | — | 9.8% | Aug 14, 2008 | The decryption function in Flagship Industries Ventrilo 3.0.2 and earlier allows remote attackers to cause a denial of s... |
| CVE-2008-3679 | — | — | 1.5% | Aug 14, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in IDevSpot PhpLinkExchange 1.01 allow remote attackers... |
| CVE-2008-3678 | — | — | 1.0% | Aug 14, 2008 | Cross-site scripting (XSS) vulnerability in admin/search_links.php in Freeway before 1.4.2.197 allows remote attackers t... |
| CVE-2008-3677 | — | — | 1.2% | Aug 14, 2008 | Directory traversal vulnerability in includes/events_application_top.php in Freeway before 1.4.2.197 allows remote attac... |
| CVE-2008-3676 | — | — | 2.8% | Aug 14, 2008 | Unspecified vulnerability in the IMAP server in hMailServer 4.4.1 allows remote authenticated users to cause a denial of... |
| CVE-2008-3675 | — | — | 2.9% | Aug 14, 2008 | Directory traversal vulnerability in classes/imgsize.php in Gelato 0.95 allows remote attackers to read arbitrary files ... |
| CVE-2008-3338 | — | — | 4.8% | Aug 13, 2008 | Multiple buffer overflows in TIBCO Hawk (1) AMI C library (libtibhawkami) and (2) Hawk HMA (tibhawkhma), as used in TIBC... |
| CVE-2008-3672 | — | — | 0.9% | Aug 13, 2008 | SQL injection vulnerability in showcategory.php in PozScripts Classified Ads allows remote attackers to execute arbitrar... |
| CVE-2008-3673 | — | — | 1.2% | Aug 13, 2008 | SQL injection vulnerability in browsecats.php in PozScripts Classified Ads allows remote attackers to execute arbitrary ... |
| CVE-2008-3669 | — | — | 1.2% | Aug 13, 2008 | SQL injection vulnerability in comments.php in ZeeScripts Reviews Opinions Rating Posting Engine Web-Site PHP Script (ak... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now