2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2008-3282HIGH7.8Integer overflow in the rtl_allocateMemory function in sal/rtl/source/alloc_global.c in the memory allocator in OpenOffi...
CVE-2008-3324HIGH8.1The PartyGaming PartyPoker client program 121/120 does not properly verify the authenticity of updates, which allows rem...
CVE-2008-3688HIGH7.5sockethandler.cpp in HTTP Antivirus Proxy (HAVP) 0.88 allows remote attackers to cause a denial of service (hang) by con...
CVE-2008-3597HIGH7.5Skulltag before 0.97d2-RC6 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon cra...
CVE-2008-3431HIGH8.8The VBoxDrvNtDeviceControl function in VBoxDrv.sys in Sun xVM VirtualBox before 1.6.4 uses the METHOD_NEITHER communicat...
CVE-2008-3438HIGH8.1Apple Mac OS X does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute...
CVE-2008-3289HIGH7.5EMC Dantz Retrospect Backup Client 7.5.116 sends the password hash in cleartext at an unspecified point, which allows re...
CVE-2008-3188HIGH7.5libxcrypt in SUSE openSUSE 11.0 uses the DES algorithm when the configuration specifies the MD5 algorithm, which makes i...
CVE-2008-2934HIGH8.8Mozilla Firefox 3 before 3.0.1 on Mac OS X allows remote attackers to cause a denial of service (application crash) or p...
CVE-2008-2931HIGH7.8The do_change_type function in fs/namespace.c in the Linux kernel before 2.6.22 does not verify that the caller has the ...
CVE-2008-2812HIGH7.8The Linux kernel before 2.6.25.10 does not properly perform tty operations, which allows local users to cause a denial o...
CVE-2008-2170HIGH7.5Unspecified vulnerability in Century routers allows remote attackers to cause a denial of service (dropped session) via ...
CVE-2008-2169HIGH7.5Unspecified vulnerability in Avici routers allows remote attackers to cause a denial of service (dropped session) via cr...
CVE-2008-2173HIGH7.5Unspecified vulnerability in Yamaha routers allows remote attackers to cause a denial of service (dropped session) via c...
CVE-2008-0322HIGH7.8The I2O Utility Filter driver (i2omgmt.sys) 5.1.2600.2180 for Microsoft Windows XP sets Everyone/Write permissions for t...
CVE-2008-0166HIGH7.5OpenSSL 0.9.8c-1 up to versions before 0.9.8g-9 on Debian-based operating systems uses a random number generator that ge...
CVE-2008-2122HIGH7.5IBM Rational Build Forge 7.0.2 allows remote attackers to cause a denial of service (CPU consumption) via a port scan, w...
CVE-2008-2020HIGH7.5The CAPTCHA implementation as used in (1) Francisco Burzi PHP-Nuke 7.0 and 8.1, (2) my123tkShop e-Commerce-Suite (aka 12...
CVE-2008-1083HIGH8.1Heap-based buffer overflow in the CreateDIBPatternBrushPt function in GDI in Microsoft Windows 2000 SP4, XP SP2, Server ...
CVE-2008-0087HIGH7.5The DNS client in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, and Vista uses predictable DNS transactio...
CVE-2008-1526HIGH7.5ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(PE9) and 3.40(AGD.2) through 3.40(AH...
CVE-2008-0063HIGH7.5The Kerberos 4 support in KDC in MIT Kerberos 5 (krb5kdc) does not properly clear the unused portion of a buffer when ge...
CVE-2008-1246HIGH7.8The Cisco PIX/ASA Finesse Operation System 7.1 and 7.2 allows local users to gain privileges by entering characters at t...
CVE-2008-0077HIGH8.8Use-after-free vulnerability in Microsoft Internet Explorer 6 SP1, 6 SP2, and and 7 allows remote attackers to execute a...
CVE-2008-0662HIGH7.8The Auto Local Logon feature in Check Point VPN-1 SecuRemote/SecureClient NGX R60 and R56 for Windows caches credentials...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now