2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-3679 | — | — | 1.5% | Aug 14, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in IDevSpot PhpLinkExchange 1.01 allow remote attackers... |
| CVE-2008-3680 | — | — | 9.8% | Aug 14, 2008 | The decryption function in Flagship Industries Ventrilo 3.0.2 and earlier allows remote attackers to cause a denial of s... |
| CVE-2008-3681 | — | — | 9.4% | Aug 14, 2008 | components/com_user/models/reset.php in Joomla! 1.5 through 1.5.5 does not properly validate reset tokens, which allows ... |
| CVE-2008-3682 | — | — | 1.9% | Aug 14, 2008 | SQL injection vulnerability in dpage.php in YPN PHP Realty allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2008-3338 | — | — | 4.8% | Aug 13, 2008 | Multiple buffer overflows in TIBCO Hawk (1) AMI C library (libtibhawkami) and (2) Hawk HMA (tibhawkhma), as used in TIBC... |
| CVE-2008-3671 | — | — | 1.6% | Aug 13, 2008 | Acronis True Image Echo Server 9.x build 8072 on Linux does not properly encrypt backups to an FTP server, which allows ... |
| CVE-2008-3669 | — | — | 1.2% | Aug 13, 2008 | SQL injection vulnerability in comments.php in ZeeScripts Reviews Opinions Rating Posting Engine Web-Site PHP Script (ak... |
| CVE-2008-3670 | — | — | 1.1% | Aug 13, 2008 | SQL injection vulnerability in authordetail.php in Article Friendly Pro allows remote attackers to execute arbitrary SQL... |
| CVE-2008-3672 | — | — | 0.9% | Aug 13, 2008 | SQL injection vulnerability in showcategory.php in PozScripts Classified Ads allows remote attackers to execute arbitrar... |
| CVE-2008-3673 | — | — | 1.2% | Aug 13, 2008 | SQL injection vulnerability in browsecats.php in PozScripts Classified Ads allows remote attackers to execute arbitrary ... |
| CVE-2008-3674 | — | — | 1.2% | Aug 13, 2008 | SQL injection vulnerability in ugroups.php in PozScripts TubeGuru Video Sharing Script allows remote attackers to execut... |
| CVE-2008-3668 | — | — | 1.5% | Aug 13, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in the Yogurt Social Network module 3.2 rc1 for XOOPS allow remote a... |
| CVE-2008-3667 | — | — | 6.9% | Aug 13, 2008 | Stack-based buffer overflow in Maxthon Browser 2.0 and earlier allows remote attackers to execute arbitrary code via a l... |
| CVE-2008-1668 | — | — | 4.5% | Aug 13, 2008 | ftpd.c in (1) wu-ftpd 2.4.2 and (2) ftpd in HP HP-UX B.11.11 assigns uid 0 to the FTP client in certain operating-system... |
| CVE-2008-3666 | — | — | 1.7% | Aug 13, 2008 | Unspecified vulnerability in Sun Solaris 10 and OpenSolaris before snv_96 allows (1) context-dependent attackers to caus... |
| CVE-2008-1457 | — | — | 36.3% | Aug 13, 2008 | The Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server ... |
| CVE-2008-1456 | — | — | 28.0% | Aug 13, 2008 | Array index vulnerability in the Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vi... |
| CVE-2008-2256 | — | — | 29.3% | Aug 13, 2008 | Microsoft Internet Explorer 5.01, 6, and 7 does not properly handle objects that have been incorrectly initialized or de... |
| CVE-2008-2257 | — | — | 35.2% | Aug 13, 2008 | Microsoft Internet Explorer 5.01, 6, and 7 accesses uninitialized memory in certain conditions, which allows remote atta... |
| CVE-2008-2259 | — | — | 30.1% | Aug 13, 2008 | Microsoft Internet Explorer 6 and 7 does not perform proper "argument validation" during print preview, which allows rem... |
| CVE-2008-3514 | — | — | 1.8% | Aug 13, 2008 | VMware VirtualCenter 2.5 before Update 2 and 2.0.2 before Update 5 relies on client-side "enabled/disabled functionality... |
| CVE-2008-2255 | — | — | 29.1% | Aug 13, 2008 | Microsoft Internet Explorer 5.01, 6, and 7 accesses uninitialized memory, which allows remote attackers to cause a denia... |
| CVE-2008-2254 | — | — | 29.3% | Aug 13, 2008 | Microsoft Internet Explorer 6 and 7 accesses uninitialized memory, which allows remote attackers to cause a denial of se... |
| CVE-2008-2258 | — | — | 35.0% | Aug 13, 2008 | Microsoft Internet Explorer 5.01, 6, and 7 accesses uninitialized memory in certain conditions, which allows remote atta... |
| CVE-2008-3652 | — | — | 3.4% | Aug 13, 2008 | src/racoon/handler.c in racoon in ipsec-tools does not remove an "orphaned ph1" (phase 1) handle when it has been initia... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now