2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-3282 | HIGH | 7.8 | 10.8% | Aug 29, 2008 | Integer overflow in the rtl_allocateMemory function in sal/rtl/source/alloc_global.c in the memory allocator in OpenOffi... |
| CVE-2008-3324 | HIGH | 8.1 | 1.4% | Aug 18, 2008 | The PartyGaming PartyPoker client program 121/120 does not properly verify the authenticity of updates, which allows rem... |
| CVE-2008-3688 | HIGH | 7.5 | 3.0% | Aug 14, 2008 | sockethandler.cpp in HTTP Antivirus Proxy (HAVP) 0.88 allows remote attackers to cause a denial of service (hang) by con... |
| CVE-2008-3597 | HIGH | 7.5 | 2.8% | Aug 12, 2008 | Skulltag before 0.97d2-RC6 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon cra... |
| CVE-2008-3431 | HIGH | 8.8 | 6.9% | Aug 5, 2008 | The VBoxDrvNtDeviceControl function in VBoxDrv.sys in Sun xVM VirtualBox before 1.6.4 uses the METHOD_NEITHER communicat... |
| CVE-2008-3438 | HIGH | 8.1 | 0.8% | Aug 1, 2008 | Apple Mac OS X does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute... |
| CVE-2008-3289 | HIGH | 7.5 | 5.2% | Jul 24, 2008 | EMC Dantz Retrospect Backup Client 7.5.116 sends the password hash in cleartext at an unspecified point, which allows re... |
| CVE-2008-3188 | HIGH | 7.5 | 1.5% | Jul 22, 2008 | libxcrypt in SUSE openSUSE 11.0 uses the DES algorithm when the configuration specifies the MD5 algorithm, which makes i... |
| CVE-2008-2934 | HIGH | 8.8 | 3.6% | Jul 18, 2008 | Mozilla Firefox 3 before 3.0.1 on Mac OS X allows remote attackers to cause a denial of service (application crash) or p... |
| CVE-2008-2931 | HIGH | 7.8 | 0.4% | Jul 9, 2008 | The do_change_type function in fs/namespace.c in the Linux kernel before 2.6.22 does not verify that the caller has the ... |
| CVE-2008-2812 | HIGH | 7.8 | 0.4% | Jul 9, 2008 | The Linux kernel before 2.6.25.10 does not properly perform tty operations, which allows local users to cause a denial o... |
| CVE-2008-2170 | HIGH | 7.5 | 1.3% | May 13, 2008 | Unspecified vulnerability in Century routers allows remote attackers to cause a denial of service (dropped session) via ... |
| CVE-2008-2169 | HIGH | 7.5 | 1.3% | May 13, 2008 | Unspecified vulnerability in Avici routers allows remote attackers to cause a denial of service (dropped session) via cr... |
| CVE-2008-2173 | HIGH | 7.5 | 1.3% | May 13, 2008 | Unspecified vulnerability in Yamaha routers allows remote attackers to cause a denial of service (dropped session) via c... |
| CVE-2008-0322 | HIGH | 7.8 | 1.6% | May 13, 2008 | The I2O Utility Filter driver (i2omgmt.sys) 5.1.2600.2180 for Microsoft Windows XP sets Everyone/Write permissions for t... |
| CVE-2008-0166 | HIGH | 7.5 | 70.7% | May 13, 2008 | OpenSSL 0.9.8c-1 up to versions before 0.9.8g-9 on Debian-based operating systems uses a random number generator that ge... |
| CVE-2008-2122 | HIGH | 7.5 | 2.3% | May 9, 2008 | IBM Rational Build Forge 7.0.2 allows remote attackers to cause a denial of service (CPU consumption) via a port scan, w... |
| CVE-2008-2020 | HIGH | 7.5 | 1.7% | Apr 30, 2008 | The CAPTCHA implementation as used in (1) Francisco Burzi PHP-Nuke 7.0 and 8.1, (2) my123tkShop e-Commerce-Suite (aka 12... |
| CVE-2008-1083 | HIGH | 8.1 | 56.8% | Apr 8, 2008 | Heap-based buffer overflow in the CreateDIBPatternBrushPt function in GDI in Microsoft Windows 2000 SP4, XP SP2, Server ... |
| CVE-2008-0087 | HIGH | 7.5 | 31.4% | Apr 8, 2008 | The DNS client in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, and Vista uses predictable DNS transactio... |
| CVE-2008-1526 | HIGH | 7.5 | 0.9% | Mar 26, 2008 | ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(PE9) and 3.40(AGD.2) through 3.40(AH... |
| CVE-2008-0063 | HIGH | 7.5 | 3.5% | Mar 19, 2008 | The Kerberos 4 support in KDC in MIT Kerberos 5 (krb5kdc) does not properly clear the unused portion of a buffer when ge... |
| CVE-2008-1246 | HIGH | 7.8 | 0.3% | Mar 10, 2008 | The Cisco PIX/ASA Finesse Operation System 7.1 and 7.2 allows local users to gain privileges by entering characters at t... |
| CVE-2008-0077 | HIGH | 8.8 | 37.2% | Feb 12, 2008 | Use-after-free vulnerability in Microsoft Internet Explorer 6 SP1, 6 SP2, and and 7 allows remote attackers to execute a... |
| CVE-2008-0662 | HIGH | 7.8 | 0.3% | Feb 8, 2008 | The Auto Local Logon feature in Check Point VPN-1 SecuRemote/SecureClient NGX R60 and R56 for Windows caches credentials... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now