2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

CVE IDSeverityCVSSDescription
CVE-2008-2972SQL injection vulnerability in index.php in KbLance allows remote attackers to execute arbitrary SQL commands via the ca...
CVE-2008-2973Multiple cross-site scripting (XSS) vulnerabilities in chathead.php in MM Chat 1.5 allow remote attackers to inject arbi...
CVE-2008-2974Directory traversal vulnerability in chatconfig.php in MM Chat 1.5, when register_globals is enabled, allows remote atta...
CVE-2008-2975Cross-site scripting (XSS) vulnerability in admin/objects/obj_image.php in TinX/cms 1.1 allows remote attackers to injec...
CVE-2008-2976Multiple directory traversal vulnerabilities in TinX/cms 1.1, when register_globals is enabled, allow remote attackers t...
CVE-2008-2977Multiple PHP remote file inclusion vulnerabilities in Ourvideo CMS 9.5 allow remote attackers to execute arbitrary PHP c...
CVE-2008-2978Directory traversal vulnerability in phpi/rss.php in Ourvideo CMS 9.5, when register_globals is enabled, allows remote a...
CVE-2008-2979Multiple cross-site scripting (XSS) vulnerabilities in phpi/login.php in Ourvideo CMS 9.5 allow remote attackers to inje...
CVE-2008-2980Multiple cross-site scripting (XSS) vulnerabilities in HomePH Design 2.10 RC2 allow remote attackers to inject arbitrary...
CVE-2008-2826Integer overflow in the sctp_getsockopt_local_addrs_old function in net/sctp/socket.c in the Stream Control Transmission...
CVE-2008-2372The Linux kernel 2.6.24 and 2.6.25 before 2.6.25.9 allows local users to cause a denial of service (memory consumption) ...
CVE-2008-2956Memory leak in Pidgin 2.0.0, and possibly other versions, allows remote attackers to cause a denial of service (memory c...
CVE-2008-2954client/NmdcHub.cpp in Linux DC++ (linuxdcpp) before 0.707 allows remote attackers to cause a denial of service (crash) v...
CVE-2008-2958Race condition in (1) checkinstall 1.6.1 and (2) installwatch allows local users to overwrite arbitrary files and have o...
CVE-2008-2955Pidgin 2.4.1 allows remote attackers to cause a denial of service (crash) via a long filename that contains certain char...
CVE-2008-2957The UPnP functionality in Pidgin 2.0.0, and possibly other versions, allows remote attackers to trigger the download of ...
CVE-2008-2953Linux DC++ (linuxdcpp) before 0.707 allows remote attackers to cause a denial of service (crash) via "partial file list ...
CVE-2008-2952liblber/io.c in OpenLDAP 2.2.4 to 2.4.10 allows remote attackers to cause a denial of service (program termination) via ...
CVE-2008-2314Dock in Apple Mac OS X 10.5 before 10.5.4, when Exposé hot corners is enabled, allows physically proximate attackers to ...
CVE-2008-2311Launch Services in Apple Mac OS X before 10.5, when Open Safe Files is enabled, allows remote attackers to execute arbit...
CVE-2008-2310Format string vulnerability in c++filt in Apple Mac OS X 10.5 before 10.5.4 allows user-assisted attackers to execute ar...
CVE-2008-2313Apple Mac OS X before 10.5 uses weak permissions for the User Template directory, which allows local users to gain privi...
CVE-2008-2309Incomplete blacklist vulnerability in CoreTypes in Apple Mac OS X before 10.5.4 allows user-assisted remote attackers to...
CVE-2008-2308Unspecified vulnerability in Alias Manager in Apple Mac OS X 10.5.1 and earlier on Intel platforms allows local users to...
CVE-2008-2945Sun Java System Access Manager 6.3 through 7.1 and Sun Java System Identity Server 6.1 and 6.2 do not properly process X...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now