2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-1887 | — | — | 6.3% | Apr 18, 2008 | Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a ... |
| CVE-2008-1886 | — | — | 6.7% | Apr 18, 2008 | The NeffyLauncher 1.0.5 ActiveX control (NeffyLauncher.dll) in CDNetworks Nefficient Download uses weak cryptography for... |
| CVE-2008-1734 | — | — | 0.3% | Apr 18, 2008 | Interpretation conflict in PHP Toolkit before 1.0.1 on Gentoo Linux might allow local users to cause a denial of service... |
| CVE-2008-1883 | — | — | 1.3% | Apr 18, 2008 | The server in Blackboard Academic Suite 7.x stores MD5 password hashes that are provided directly by clients, which make... |
| CVE-2008-1885 | — | — | 4.1% | Apr 18, 2008 | Directory traversal vulnerability in the NeffyLauncher 1.0.5 ActiveX control (NeffyLauncher.dll) in CDNetworks Nefficien... |
| CVE-2008-1693 | — | — | 4.9% | Apr 18, 2008 | The CairoFont::create function in CairoFontEngine.cc in Poppler, possibly before 0.8.0, as used in Xpdf, Evince, ePDFvie... |
| CVE-2008-1884 | — | — | 1.5% | Apr 18, 2008 | Directory traversal vulnerability in index.php in Wikepage Opus 13 2007.2 allows remote attackers to read arbitrary file... |
| CVE-2008-1881 | — | — | 11.8% | Apr 17, 2008 | Stack-based buffer overflow in the ParseSSA function (modules/demux/subtitle.c) in VLC 0.8.6e allows remote attackers to... |
| CVE-2008-1878 | — | — | 15.0% | Apr 17, 2008 | Stack-based buffer overflow in the demux_nsf_send_chunk function in src/demuxers/demux_nsf.c in xine-lib 1.1.12 and earl... |
| CVE-2008-1026 | — | — | 4.8% | Apr 17, 2008 | Integer overflow in the PCRE regular expression compiler (JavaScriptCore/pcre/pcre_compile.cpp) in Apple WebKit, as used... |
| CVE-2008-1380 | — | — | 2.9% | Apr 17, 2008 | The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird before 2.0.0.14, and SeaMonkey before 1.1.10 allow... |
| CVE-2008-1024 | — | — | 4.0% | Apr 17, 2008 | Apple Safari before 3.1.1, when running on Windows XP or Vista, allows remote attackers to cause a denial of service (cr... |
| CVE-2008-1025 | — | — | 2.9% | Apr 17, 2008 | Cross-site scripting (XSS) vulnerability in Apple WebKit, as used in Safari before 3.1.1, allows remote attackers to inj... |
| CVE-2008-1860 | — | — | 3.0% | Apr 17, 2008 | Static code injection vulnerability in admin.php in LokiCMS 0.3.3 and earlier allows remote attackers to inject arbitrar... |
| CVE-2008-1861 | — | — | 1.9% | Apr 17, 2008 | Directory traversal vulnerability in modules/threadstop/threadstop.php in ExBB Italia 0.22 and earlier, when register_gl... |
| CVE-2008-1862 | — | — | 3.1% | Apr 17, 2008 | ExBB Italia 0.22 and earlier only checks GET requests that use the QUERY_STRING for certain path manipulations, which al... |
| CVE-2008-1863 | — | — | 2.1% | Apr 17, 2008 | SQL injection vulnerability in view_reviews.php in Prozilla Cheat Script (aka Cheats) 2.0 allows remote attackers to exe... |
| CVE-2008-1864 | — | — | 1.0% | Apr 17, 2008 | SQL injection vulnerability in project.php in Prozilla Freelancers allows remote attackers to execute arbitrary SQL comm... |
| CVE-2008-1865 | — | — | 0.3% | Apr 17, 2008 | Stack-based buffer overflow in the msx_readnode function in libmosix.c in openmosix-tools (aka userspace-tools) in openM... |
| CVE-2008-1866 | — | — | 5.2% | Apr 17, 2008 | admin/modif_config.php in Blog Pixel Motion (aka PixelMotion) does not require admin authentication, which allows remote... |
| CVE-2008-1867 | — | — | 1.0% | Apr 17, 2008 | SQL injection vulnerability in Blog Pixel Motion (aka Blog PixelMotion) allows remote attackers to execute arbitrary SQL... |
| CVE-2008-1868 | — | — | 2.6% | Apr 17, 2008 | admin/sauvBase.php in Blog Pixel Motion (aka Blog PixelMotion) does not require authentication, which allows remote atta... |
| CVE-2008-1869 | — | — | 1.0% | Apr 17, 2008 | SQL injection vulnerability in Site Sift Listings allows remote attackers to execute arbitrary SQL commands via the id p... |
| CVE-2008-1870 | — | — | 1.0% | Apr 17, 2008 | SQL injection vulnerability in getdata.php in PIGMy-SQL 1.4.1 and earlier allows remote attackers to execute arbitrary S... |
| CVE-2008-1871 | — | — | 0.9% | Apr 17, 2008 | SQL injection vulnerability in links.php in Scriptsagent.com Links Directory 1.1 allows remote authenticated users to ex... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now