2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-3252 | — | — | 6.7% | Jul 21, 2008 | Stack-based buffer overflow in the read_article function in getarticle.c in newsx 1.6 allows remote attackers to execute... |
| CVE-2008-3251 | — | — | 2.4% | Jul 21, 2008 | Multiple SQL injection vulnerabilities in tplSoccerSite 1.0 allow remote attackers to execute arbitrary SQL commands via... |
| CVE-2008-3249 | — | — | 1.3% | Jul 21, 2008 | The client in Lenovo System Update before 3.14 does not properly validate the certificate when establishing an SSL conne... |
| CVE-2008-3245 | — | — | 2.0% | Jul 21, 2008 | SQL injection vulnerability in phpHoo3.php in phpHoo3 4.3.9, 4.3.10, 4.4.8, and 5.2.6 allows remote attackers to execute... |
| CVE-2008-3244 | — | — | 2.2% | Jul 21, 2008 | The scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allows remote attackers to cause a denial of service... |
| CVE-2008-3243 | — | — | 2.1% | Jul 21, 2008 | Multiple unspecified vulnerabilities in the scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allow remote... |
| CVE-2008-3242 | — | — | 15.7% | Jul 21, 2008 | Heap-based buffer overflow in the PPMedia Class ActiveX control in PPMPlayer.dll in PPMate 2.3.1.93 allows remote attack... |
| CVE-2008-3241 | — | — | 2.1% | Jul 21, 2008 | SQL injection vulnerability in players-detail.php in UltraStats 0.2.136, 0.2.140, and 0.2.142 allows remote attackers to... |
| CVE-2008-3240 | — | — | 2.4% | Jul 21, 2008 | SQL injection vulnerability in index.php in AlstraSoft Affiliate Network Pro allows remote attackers to execute arbitrar... |
| CVE-2008-3239 | — | — | 5.2% | Jul 21, 2008 | Unrestricted file upload vulnerability in the writeLogEntry function in system/v_cron_proc.php in PHPizabi 0.848b C1 HFP... |
| CVE-2008-3238 | — | — | 1.2% | Jul 21, 2008 | Multiple SQL injection vulnerabilities in ITechBids 7.0 Gold allow remote attackers to execute arbitrary SQL commands vi... |
| CVE-2008-3187 | — | — | 1.7% | Jul 21, 2008 | zypp-refresh-patches in zypper in SUSE openSUSE 10.2, 10.3, and 11.0 does not ask the user before accepting repository k... |
| CVE-2008-3237 | — | — | 1.7% | Jul 21, 2008 | Cross-site scripting (XSS) vulnerability in forward_to_friend.php in ITechBids 7.0 Gold allows remote attackers to injec... |
| CVE-2008-3246 | — | — | 6.9% | Jul 21, 2008 | Unspecified vulnerability in the PDF distiller component in the BlackBerry Attachment Service in BlackBerry Unite! 1.0 S... |
| CVE-2008-3236 | — | — | 1.3% | Jul 21, 2008 | Unspecified vulnerability in Wsadmin in the System Management/Repository component in IBM WebSphere Application Server (... |
| CVE-2008-3235 | — | — | 1.8% | Jul 21, 2008 | Unspecified vulnerability in the PropFilePasswordEncoder utility in the Security component in IBM WebSphere Application ... |
| CVE-2008-3218 | — | — | 2.5% | Jul 18, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in Drupal 6.x before 6.3 allow remote attackers to inject arbitrary ... |
| CVE-2008-3231 | — | — | 1.9% | Jul 18, 2008 | xine-lib before 1.1.15 allows remote attackers to cause a denial of service (crash) via a crafted OGG file, as demonstra... |
| CVE-2008-3230 | — | — | 0.4% | Jul 18, 2008 | The ffmpeg lavf demuxer allows user-assisted attackers to cause a denial of service (application crash) via a crafted GI... |
| CVE-2008-3229 | — | — | 0.4% | Jul 18, 2008 | Stack-based buffer overflow in op before Changeset 563, when xauth support is enabled, allows local users to gain privil... |
| CVE-2008-3228 | — | — | 1.2% | Jul 18, 2008 | Joomla! before 1.5.4 does not configure .htaccess to apply certain security checks that "block common exploits" to SEF U... |
| CVE-2008-3227 | — | — | 1.1% | Jul 18, 2008 | Unspecified vulnerability in Joomla! before 1.5.4 has unknown impact and attack vectors related to a "User Redirect Spam... |
| CVE-2008-3214 | — | — | 2.5% | Jul 18, 2008 | dnsmasq 2.25 allows remote attackers to cause a denial of service (daemon crash) by (1) renewing a nonexistent lease or ... |
| CVE-2008-3223 | — | — | 3.2% | Jul 18, 2008 | SQL injection vulnerability in the Schema API in Drupal 6.x before 6.3 allows remote attackers to execute arbitrary SQL ... |
| CVE-2008-3225 | — | — | 1.5% | Jul 18, 2008 | Joomla! before 1.5.4 allows attackers to access administration functionality, which has unknown impact and attack vector... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now