2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-3252Stack-based buffer overflow in the read_article function in getarticle.c in newsx 1.6 allows remote attackers to execute...
CVE-2008-3251Multiple SQL injection vulnerabilities in tplSoccerSite 1.0 allow remote attackers to execute arbitrary SQL commands via...
CVE-2008-3249The client in Lenovo System Update before 3.14 does not properly validate the certificate when establishing an SSL conne...
CVE-2008-3245SQL injection vulnerability in phpHoo3.php in phpHoo3 4.3.9, 4.3.10, 4.4.8, and 5.2.6 allows remote attackers to execute...
CVE-2008-3244The scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allows remote attackers to cause a denial of service...
CVE-2008-3243Multiple unspecified vulnerabilities in the scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allow remote...
CVE-2008-3242Heap-based buffer overflow in the PPMedia Class ActiveX control in PPMPlayer.dll in PPMate 2.3.1.93 allows remote attack...
CVE-2008-3241SQL injection vulnerability in players-detail.php in UltraStats 0.2.136, 0.2.140, and 0.2.142 allows remote attackers to...
CVE-2008-3240SQL injection vulnerability in index.php in AlstraSoft Affiliate Network Pro allows remote attackers to execute arbitrar...
CVE-2008-3239Unrestricted file upload vulnerability in the writeLogEntry function in system/v_cron_proc.php in PHPizabi 0.848b C1 HFP...
CVE-2008-3238Multiple SQL injection vulnerabilities in ITechBids 7.0 Gold allow remote attackers to execute arbitrary SQL commands vi...
CVE-2008-3187zypp-refresh-patches in zypper in SUSE openSUSE 10.2, 10.3, and 11.0 does not ask the user before accepting repository k...
CVE-2008-3237Cross-site scripting (XSS) vulnerability in forward_to_friend.php in ITechBids 7.0 Gold allows remote attackers to injec...
CVE-2008-3246Unspecified vulnerability in the PDF distiller component in the BlackBerry Attachment Service in BlackBerry Unite! 1.0 S...
CVE-2008-3236Unspecified vulnerability in Wsadmin in the System Management/Repository component in IBM WebSphere Application Server (...
CVE-2008-3235Unspecified vulnerability in the PropFilePasswordEncoder utility in the Security component in IBM WebSphere Application ...
CVE-2008-3218Multiple cross-site scripting (XSS) vulnerabilities in Drupal 6.x before 6.3 allow remote attackers to inject arbitrary ...
CVE-2008-3231xine-lib before 1.1.15 allows remote attackers to cause a denial of service (crash) via a crafted OGG file, as demonstra...
CVE-2008-3230The ffmpeg lavf demuxer allows user-assisted attackers to cause a denial of service (application crash) via a crafted GI...
CVE-2008-3229Stack-based buffer overflow in op before Changeset 563, when xauth support is enabled, allows local users to gain privil...
CVE-2008-3228Joomla! before 1.5.4 does not configure .htaccess to apply certain security checks that "block common exploits" to SEF U...
CVE-2008-3227Unspecified vulnerability in Joomla! before 1.5.4 has unknown impact and attack vectors related to a "User Redirect Spam...
CVE-2008-3214dnsmasq 2.25 allows remote attackers to cause a denial of service (daemon crash) by (1) renewing a nonexistent lease or ...
CVE-2008-3223SQL injection vulnerability in the Schema API in Drupal 6.x before 6.3 allows remote attackers to execute arbitrary SQL ...
CVE-2008-3225Joomla! before 1.5.4 allows attackers to access administration functionality, which has unknown impact and attack vector...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now