2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-3441 | — | — | 2.5% | Aug 1, 2008 | Nullsoft Winamp before 5.24 does not properly verify the authenticity of updates, which allows man-in-the-middle attacke... |
| CVE-2008-3442 | — | — | 3.8% | Aug 1, 2008 | WinZip before 11.0 does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to exe... |
| CVE-2008-3435 | — | — | 1.8% | Aug 1, 2008 | LinkedIn Browser Toolbar 3.0.3.1100 and earlier does not properly verify the authenticity of updates, which allows man-i... |
| CVE-2008-2315 | — | — | 4.2% | Aug 1, 2008 | Multiple integer overflows in Python 2.5.2 and earlier allow context-dependent attackers to have an unknown impact via v... |
| CVE-2008-2316 | — | — | 3.5% | Aug 1, 2008 | Integer overflow in _hashopenssl.c in the hashlib module in Python 2.5.2 and earlier might allow context-dependent attac... |
| CVE-2008-2935 | — | — | 12.8% | Aug 1, 2008 | Multiple heap-based buffer overflows in the rc4 (1) encryption (aka exsltCryptoRc4EncryptFunction) and (2) decryption (a... |
| CVE-2008-1376 | — | — | 2.6% | Aug 1, 2008 | A certain Red Hat build script for nfs-utils before 1.0.9-35z.el5_2 on Red Hat Enterprise Linux (RHEL) 5 omits TCP wrapp... |
| CVE-2008-1810 | — | — | 0.3% | Aug 1, 2008 | Untrusted search path vulnerability in dbmsrv in SAP MaxDB 7.6.03.15 on Linux allows local users to gain privileges via ... |
| CVE-2008-3175 | — | — | 14.4% | Aug 1, 2008 | Integer underflow in rxRPC.dll in the LGServer service in the server in CA ARCserve Backup for Laptops and Desktops 11.0... |
| CVE-2008-3438 | HIGH | 8.1 | 0.8% | Aug 1, 2008 | Apple Mac OS X does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute... |
| CVE-2008-2235 | — | — | 0.4% | Aug 1, 2008 | OpenSC before 0.11.5 uses weak permissions (ADMIN file control information of 00) for the 5015 directory on smart cards ... |
| CVE-2008-3430 | — | — | 5.6% | Jul 31, 2008 | Buffer overflow in the CoVideoWindow.ocx ActiveX control 5.0.907.1 in Eyeball MessengerSDK, as used in products such as ... |
| CVE-2008-3425 | — | — | 2.0% | Jul 31, 2008 | Unspecified vulnerability in the Sun Java System Web Server 7.0 plugin in Sun N1 Service Provisioning System (SPS) 5.2 a... |
| CVE-2008-3424 | — | — | 2.7% | Jul 31, 2008 | Condor before 7.0.4 does not properly handle wildcards in the ALLOW_WRITE, DENY_WRITE, HOSTALLOW_WRITE, or HOSTDENY_WRIT... |
| CVE-2008-3426 | — | — | 0.3% | Jul 31, 2008 | Unspecified vulnerability in the Solaris Platform Information and Control Library daemon (picld) in Sun Solaris 8 throug... |
| CVE-2008-3428 | — | — | 1.2% | Jul 31, 2008 | Session fixation vulnerability in phpFreeChat 1.1 allows remote authenticated users to hijack web sessions by setting th... |
| CVE-2008-3429 | — | — | 3.7% | Jul 31, 2008 | Buffer overflow in URI processing in HTTrack and WinHTTrack before 3.42-3 allows remote attackers to cause a denial of s... |
| CVE-2008-3427 | — | — | — | Jul 31, 2008 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-3420. Reason: This candidate is a duplicate of... |
| CVE-2008-3422 | — | — | 1.6% | Jul 31, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in the ASP.net class libraries in Mono 2.0 and earlier allow remote ... |
| CVE-2008-3411 | — | — | 2.6% | Jul 31, 2008 | The Axesstel AXW-D800 modem with D2_ETH_109_01_VEBR Jun-14-2006 software does not require authentication for (1) etc/con... |
| CVE-2008-3414 | — | — | 1.2% | Jul 31, 2008 | SQL injection vulnerability in line2.php in SiteAdmin allows remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2008-3415 | — | — | 2.9% | Jul 31, 2008 | Directory traversal vulnerability in common.php in CMScout 2.05, when .htaccess is not supported, allows remote attacker... |
| CVE-2008-3416 | — | — | 2.4% | Jul 31, 2008 | SQL injection vulnerability in modules/members.php in IceBB before 1.0-rc9.3 allows remote attackers to execute arbitrar... |
| CVE-2008-3417 | — | — | 1.0% | Jul 31, 2008 | SQL injection vulnerability in home/index.asp in fipsCMS light 2.1 and earlier allows remote attackers to execute arbitr... |
| CVE-2008-3418 | — | — | 1.0% | Jul 31, 2008 | SQL injection vulnerability in browse.php in TriO 2.1 and earlier allows remote attackers to execute arbitrary SQL comma... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now