2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-3446 | — | — | 2.0% | Aug 4, 2008 | Directory traversal vulnerability in inc/wysiwyg.php in LetterIt 2 allows remote attackers to include and execute arbitr... |
| CVE-2008-3447 | — | — | 7.9% | Aug 4, 2008 | The scanning engine in F-Prot Antivirus 6.2.1 4252 allows remote attackers to cause a denial of service (infinite loop) ... |
| CVE-2008-3449 | — | — | 2.2% | Aug 4, 2008 | MailEnable Professional 3.5.2 and Enterprise 3.52 allow remote attackers to cause a denial of service (crash) via multip... |
| CVE-2008-3445 | — | — | 1.0% | Aug 4, 2008 | SQL injection vulnerability in index.php in phpMyRealty (PMR) 2.0.0 allows remote attackers to execute arbitrary SQL com... |
| CVE-2008-3448 | — | — | 1.7% | Aug 4, 2008 | Cross-site scripting (XSS) vulnerability in index.php in common solutions csphonebook 1.02 allows remote attackers to in... |
| CVE-2008-3444 | — | — | 1.6% | Aug 4, 2008 | The content layout component in Mozilla Firefox 3.0 and 3.0.1 allows remote attackers to cause a denial of service (NULL... |
| CVE-2008-2370 | — | — | 52.7% | Aug 4, 2008 | Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.16, when a RequestDispatcher is used, pe... |
| CVE-2008-2325 | — | — | 4.9% | Aug 4, 2008 | QuickLook in Apple Mac OS X 10.4.11 and 10.5.4 allows remote attackers to execute arbitrary code or cause a denial of se... |
| CVE-2008-2322 | — | — | 5.7% | Aug 4, 2008 | Integer overflow in CoreGraphics in Apple Mac OS X 10.4.11, 10.5.2, and 10.5.4 allows remote attackers to execute arbitr... |
| CVE-2008-1232 | — | — | 75.9% | Aug 4, 2008 | Cross-site scripting (XSS) vulnerability in Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through ... |
| CVE-2008-2320 | — | — | 3.8% | Aug 4, 2008 | Stack-based buffer overflow in CarbonCore in Apple Mac OS X 10.4.11 and 10.5.4, iPhone OS 1.0 through 2.2.1, and iPhone ... |
| CVE-2008-2323 | — | — | 1.8% | Aug 4, 2008 | Unspecified vulnerability in Data Detectors Engine in Apple Mac OS X 10.5.4 allows attackers to cause a denial of servic... |
| CVE-2008-2321 | — | — | 12.5% | Aug 4, 2008 | Unspecified vulnerability in CoreGraphics in Apple Mac OS X 10.4.11 and 10.5.4 allows remote attackers to execute arbitr... |
| CVE-2008-2324 | — | — | 0.3% | Aug 4, 2008 | The Repair Permissions tool in Disk Utility in Apple Mac OS X 10.4.11 adds the setuid bit to the emacs executable file, ... |
| CVE-2008-3423 | — | — | 1.8% | Aug 4, 2008 | IBM WebSphere Portal 5.1 through 6.1.0.0 allows remote attackers to bypass authentication and obtain administrative acce... |
| CVE-2008-3436 | — | — | 1.8% | Aug 1, 2008 | The GUP generic update process in Notepad++ before 4.8.1 does not properly verify the authenticity of updates, which all... |
| CVE-2008-3144 | — | — | 4.1% | Aug 1, 2008 | Multiple integer overflows in the PyOS_vsnprintf function in Python/mysnprintf.c in Python 2.5.2 and earlier allow conte... |
| CVE-2008-3143 | — | — | 3.7% | Aug 1, 2008 | Multiple integer overflows in Python before 2.5.2 might allow context-dependent attackers to have an unknown impact via ... |
| CVE-2008-3142 | — | — | 4.5% | Aug 1, 2008 | Multiple buffer overflows in Python 2.5.2 and earlier on 32bit platforms allow context-dependent attackers to cause a de... |
| CVE-2008-3434 | — | — | 2.6% | Aug 1, 2008 | Apple iTunes before 10.5.1 does not properly verify the authenticity of updates, which allows man-in-the-middle attacker... |
| CVE-2008-3433 | — | — | 1.8% | Aug 1, 2008 | SpeedBit Download Accelerator Plus (DAP) before 8.6.3.9 does not properly verify the authenticity of updates, which allo... |
| CVE-2008-3437 | — | — | 1.9% | Aug 1, 2008 | OpenOffice.org (OOo) before 2.1.0 does not properly verify the authenticity of updates, which allows man-in-the-middle a... |
| CVE-2008-1662 | — | — | 4.4% | Aug 1, 2008 | Unspecified vulnerability in the HP System Administration Manager (SAM) on HP-UX B.11.11 and B.11.23, when used to confi... |
| CVE-2008-3439 | — | — | 1.8% | Aug 1, 2008 | SpeedBit Video Acceleration before 2.2.1.8 does not properly verify the authenticity of updates, which allows man-in-the... |
| CVE-2008-3440 | — | — | 2.4% | Aug 1, 2008 | Sun Java 1.6.0_03 and earlier versions, and possibly later versions, does not properly verify the authenticity of update... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now