2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-3441Nullsoft Winamp before 5.24 does not properly verify the authenticity of updates, which allows man-in-the-middle attacke...
CVE-2008-3442WinZip before 11.0 does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to exe...
CVE-2008-3435LinkedIn Browser Toolbar 3.0.3.1100 and earlier does not properly verify the authenticity of updates, which allows man-i...
CVE-2008-2315Multiple integer overflows in Python 2.5.2 and earlier allow context-dependent attackers to have an unknown impact via v...
CVE-2008-2316Integer overflow in _hashopenssl.c in the hashlib module in Python 2.5.2 and earlier might allow context-dependent attac...
CVE-2008-2935Multiple heap-based buffer overflows in the rc4 (1) encryption (aka exsltCryptoRc4EncryptFunction) and (2) decryption (a...
CVE-2008-1376A certain Red Hat build script for nfs-utils before 1.0.9-35z.el5_2 on Red Hat Enterprise Linux (RHEL) 5 omits TCP wrapp...
CVE-2008-1810Untrusted search path vulnerability in dbmsrv in SAP MaxDB 7.6.03.15 on Linux allows local users to gain privileges via ...
CVE-2008-3175Integer underflow in rxRPC.dll in the LGServer service in the server in CA ARCserve Backup for Laptops and Desktops 11.0...
CVE-2008-3438HIGH8.1Apple Mac OS X does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute...
CVE-2008-2235OpenSC before 0.11.5 uses weak permissions (ADMIN file control information of 00) for the 5015 directory on smart cards ...
CVE-2008-3430Buffer overflow in the CoVideoWindow.ocx ActiveX control 5.0.907.1 in Eyeball MessengerSDK, as used in products such as ...
CVE-2008-3425Unspecified vulnerability in the Sun Java System Web Server 7.0 plugin in Sun N1 Service Provisioning System (SPS) 5.2 a...
CVE-2008-3424Condor before 7.0.4 does not properly handle wildcards in the ALLOW_WRITE, DENY_WRITE, HOSTALLOW_WRITE, or HOSTDENY_WRIT...
CVE-2008-3426Unspecified vulnerability in the Solaris Platform Information and Control Library daemon (picld) in Sun Solaris 8 throug...
CVE-2008-3428Session fixation vulnerability in phpFreeChat 1.1 allows remote authenticated users to hijack web sessions by setting th...
CVE-2008-3429Buffer overflow in URI processing in HTTrack and WinHTTrack before 3.42-3 allows remote attackers to cause a denial of s...
CVE-2008-3427Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-3420. Reason: This candidate is a duplicate of...
CVE-2008-3422Multiple cross-site scripting (XSS) vulnerabilities in the ASP.net class libraries in Mono 2.0 and earlier allow remote ...
CVE-2008-3411The Axesstel AXW-D800 modem with D2_ETH_109_01_VEBR Jun-14-2006 software does not require authentication for (1) etc/con...
CVE-2008-3414SQL injection vulnerability in line2.php in SiteAdmin allows remote attackers to execute arbitrary SQL commands via the ...
CVE-2008-3415Directory traversal vulnerability in common.php in CMScout 2.05, when .htaccess is not supported, allows remote attacker...
CVE-2008-3416SQL injection vulnerability in modules/members.php in IceBB before 1.0-rc9.3 allows remote attackers to execute arbitrar...
CVE-2008-3417SQL injection vulnerability in home/index.asp in fipsCMS light 2.1 and earlier allows remote attackers to execute arbitr...
CVE-2008-3418SQL injection vulnerability in browse.php in TriO 2.1 and earlier allows remote attackers to execute arbitrary SQL comma...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now