2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-2160 | — | — | 18.0% | May 12, 2008 | Multiple unspecified vulnerabilities in the JPEG (GDI+) and GIF image processing in Microsoft Windows CE 5.0 allow remot... |
| CVE-2008-1803 | — | — | 6.7% | May 12, 2008 | Integer signedness error in the xrealloc function (rdesktop.c) in RDesktop 1.5.0 allows remote attackers to execute arbi... |
| CVE-2008-2161 | — | — | 65.3% | May 12, 2008 | Buffer overflow in TFTP Server SP 1.4 and 1.5 on Windows, and possibly other versions, allows remote attackers to execut... |
| CVE-2008-2148 | — | — | 0.4% | May 12, 2008 | The utimensat system call (sys_utimensat) in Linux kernel 2.6.22 and other versions before 2.6.25.3 does not check file ... |
| CVE-2008-2149 | — | — | 4.1% | May 12, 2008 | Stack-based buffer overflow in the searchwn function in Wordnet 2.0, 2.1, and 3.0 might allow context-dependent attacker... |
| CVE-2008-2146 | — | — | 2.7% | May 12, 2008 | wp-includes/vars.php in Wordpress before 2.2.3 does not properly extract the current path from the PATH_INFO ($PHP_SELF)... |
| CVE-2008-2147 | — | — | 0.4% | May 12, 2008 | Untrusted search path vulnerability in VideoLAN VLC before 0.9.0 allows local users to execute arbitrary code via a mali... |
| CVE-2008-2145 | — | — | 0.5% | May 12, 2008 | Stack-based buffer overflow in Novell Client 4.91 SP4 and earlier allows local users to cause a denial of service (crash... |
| CVE-2008-2144 | — | — | 16.8% | May 12, 2008 | Multiple unspecified vulnerabilities in Solaris print service for Sun Solaris 8, 9, and 10 allow remote attackers to cau... |
| CVE-2008-2143 | — | — | 1.5% | May 12, 2008 | Unspecified versions of Microsoft Outlook Web Access (OWA) use the Cache-Control: no-cache HTTP directive instead of no-... |
| CVE-2008-2142 | — | — | 3.7% | May 12, 2008 | Emacs 21 and XEmacs automatically load and execute .flc (fast lock) files that are associated with other files that are ... |
| CVE-2008-2140 | — | — | 0.4% | May 12, 2008 | Cross-site request forgery (CSRF) vulnerability in the rootpw plugin in rPath Appliance Platform Agent 2 and 3 allows re... |
| CVE-2008-2139 | — | — | 0.4% | May 12, 2008 | The rootpw plugin in rPath Appliance Platform Agent 2 and 3 does not re-validate requests from a browser with a valid ad... |
| CVE-2008-2138 | — | — | 15.5% | May 12, 2008 | Oracle Application Server (OracleAS) Portal 10g allows remote attackers to bypass intended access restrictions and read ... |
| CVE-2008-1802 | — | — | 13.0% | May 12, 2008 | Buffer overflow in the process_redirect_pdu (rdp.c) function in rdesktop 1.5.0 allows remote attackers to execute arbitr... |
| CVE-2008-2071 | — | — | 0.7% | May 12, 2008 | Multiple cross-site request forgery (CSRF) vulnerabilities in the WHM interface 11.15.0 for cPanel 11.18 before 11.18.4 ... |
| CVE-2008-2070 | — | — | 2.2% | May 12, 2008 | The WHM interface 11.15.0 for cPanel 11.18 before 11.18.4 and 11.22 before 11.22.3 allows remote attackers to bypass XSS... |
| CVE-2008-1880 | — | — | 2.1% | May 12, 2008 | The default configuration of Firebird before 2.0.3.12981.0-r6 on Gentoo Linux sets the ISC_PASSWORD environment variable... |
| CVE-2008-1677 | — | — | 4.9% | May 12, 2008 | Buffer overflow in the regular expression handler in Red Hat Directory Server 8.0 and 7.1 before SP6 allows remote attac... |
| CVE-2008-1801 | — | — | 13.1% | May 12, 2008 | Integer underflow in the iso_recv_msg function (iso.c) in rdesktop 1.5.0 allows remote attackers to cause a denial of se... |
| CVE-2008-2085 | — | — | 5.2% | May 12, 2008 | Multiple stack-based buffer overflows in the (1) get_remote_ip_media and (2) get_remote_ipv6_media functions in call.cpp... |
| CVE-2008-2125 | — | — | 1.0% | May 9, 2008 | SQL injection vulnerability in viewalbums.php in Musicbox 2.3.6 and 2.3.7 allows remote attackers to execute arbitrary S... |
| CVE-2008-2124 | — | — | 1.0% | May 9, 2008 | SQL injection vulnerability in modules/print.asp in fipsASP fipsCMS allows remote attackers to execute arbitrary SQL com... |
| CVE-2008-2123 | — | — | 2.2% | May 9, 2008 | Cross-site scripting (XSS) vulnerability in WGate in SAP Internet Transaction Server (ITS) 6.20 allows remote attackers ... |
| CVE-2008-2131 | — | — | 1.3% | May 9, 2008 | Cross-site scripting (XSS) vulnerability in mvnForum 1.1 GA allows remote authenticated users to inject arbitrary web sc... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now