2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-0893 | — | — | 2.0% | Apr 16, 2008 | Red Hat Administration Server, as used by Red Hat Directory Server 8.0 EL4 and EL5, does not properly restrict access to... |
| CVE-2008-0892 | — | — | 14.0% | Apr 16, 2008 | The replication monitor CGI script (repl-monitor-cgi.pl) in Red Hat Administration Server, as used by Red Hat Directory ... |
| CVE-2008-1849 | — | — | 2.7% | Apr 16, 2008 | Directory traversal vulnerability in index.php in the joomlaXplorer (com_joomlaxplorer) Mambo/Joomla! component 1.6.2 an... |
| CVE-2008-1838 | — | — | 1.0% | Apr 16, 2008 | SQL injection vulnerability in BosClassifieds Classified Ads System 3.0 allows remote attackers to execute arbitrary SQL... |
| CVE-2008-1839 | — | — | 1.0% | Apr 16, 2008 | Multgiple cross-site scripting (XSS) vulnerabilities in module/main.php in WORK system e-commerce 4.0.9 allow remote att... |
| CVE-2008-1155 | — | — | 2.6% | Apr 16, 2008 | Cisco Network Admission Control (NAC) Appliance 3.5.x, 3.6.x before 3.6.4.4, 4.0.x before 4.0.6, and 4.1.x before 4.1.2 ... |
| CVE-2008-1848 | — | — | 1.4% | Apr 16, 2008 | Cross-site scripting (XSS) vulnerability in the joomlaXplorer (com_joomlaxplorer) Mambo/Joomla! component 1.6.2 and earl... |
| CVE-2008-1786 | — | — | 6.8% | Apr 16, 2008 | The DSM gui_cm_ctrls ActiveX control (gui_cm_ctrls.ocx), as used in multiple CA products including BrightStor ARCServe B... |
| CVE-2008-1847 | — | — | 1.0% | Apr 16, 2008 | SQL injection vulnerability in view.php in CoronaMatrix phpAddressBook 2.11 allows remote attackers to execute arbitrary... |
| CVE-2008-1846 | — | — | 1.2% | Apr 16, 2008 | The default configuration of SAP NetWeaver before 7.0 SP15 does not enable the "Always Use Secure HTML Editor" (aka Edit... |
| CVE-2008-1845 | — | — | 0.3% | Apr 16, 2008 | The Korn shell (aka mksh) before R33d on MirOS (aka MirBSD) does not flush the tty's I/O when invoking mksh in a new ter... |
| CVE-2008-1844 | — | — | 1.2% | Apr 16, 2008 | SQL injection vulnerability in cat.php in W2B phpHotResources allows remote attackers to execute arbitrary SQL commands ... |
| CVE-2008-1840 | — | — | 1.8% | Apr 16, 2008 | SQL injection vulnerability in upload.php in Coppermine Photo Gallery (CPG) 1.4.16 and earlier allows remote authenticat... |
| CVE-2008-1843 | — | — | 1.2% | Apr 16, 2008 | SQL injection vulnerability in browse.php in W2B DatingClub (aka Dating Club) allows remote attackers to execute arbitra... |
| CVE-2008-1842 | — | — | 12.2% | Apr 16, 2008 | Integer signedness error in ovspmd.exe in HP OpenView Network Node Manager (OV NNM) 8.01, and 7.53 and earlier, allows r... |
| CVE-2008-1841 | — | — | 1.9% | Apr 16, 2008 | SQL injection vulnerability in the session handling functionality in bridge/coppermine.inc.php in Coppermine Photo Galle... |
| CVE-2008-1850 | — | — | 1.3% | Apr 16, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in login.php in Omnistar Interactive OSI Affiliate allow remote atta... |
| CVE-2008-1387 | — | — | 4.4% | Apr 16, 2008 | ClamAV before 0.93 allows remote attackers to cause a denial of service (CPU consumption) via a crafted ARJ archive, as ... |
| CVE-2008-1834 | — | — | 1.1% | Apr 16, 2008 | swfdec_load_object.c in Swfdec before 0.6.4 does not properly restrict local file access from untrusted sandboxes, which... |
| CVE-2008-1835 | — | — | 4.0% | Apr 16, 2008 | ClamAV before 0.93 allows remote attackers to bypass the scanning enging via a RAR file with an invalid version number, ... |
| CVE-2008-1837 | — | — | 4.8% | Apr 16, 2008 | libclamunrar in ClamAV before 0.93 allows remote attackers to cause a denial of service (crash) via crafted RAR files th... |
| CVE-2008-1836 | — | — | 3.5% | Apr 16, 2008 | The rfc2231 function in message.c in libclamav in ClamAV before 0.93 allows remote attackers to cause a denial of servic... |
| CVE-2008-0314 | — | — | 9.0% | Apr 16, 2008 | Heap-based buffer overflow in spin.c in libclamav in ClamAV 0.92.1 allows remote attackers to execute arbitrary code via... |
| CVE-2008-1832 | — | — | 0.3% | Apr 16, 2008 | lib/prefs.tcl in Cecilia 2.0.5 allows local users to overwrite arbitrary files via a symlink attack on the csvers tempor... |
| CVE-2008-1771 | — | — | 3.7% | Apr 16, 2008 | Integer overflow in the ws_getpostvars function in Firefly Media Server (formerly mt-daapd) 0.2.4.1 (0.9~r1696-1.2 on De... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now