2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-1651 | — | — | 3.1% | Apr 2, 2008 | Directory traversal vulnerability in admin/login.php in EasyNews 4.0 allows remote attackers to include and execute arbi... |
| CVE-2008-1626 | — | — | 1.8% | Apr 2, 2008 | SQL injection vulnerability in eggBlog before 4.0.1 allows remote attackers to execute arbitrary SQL commands via an uns... |
| CVE-2008-1631 | — | — | 1.1% | Apr 2, 2008 | SQL injection vulnerability in login.php in CuteFlow 1.5.0 and 2.10.0 allows remote attackers to execute arbitrary SQL c... |
| CVE-2008-0069 | — | — | 8.4% | Apr 2, 2008 | Stack-based buffer overflow in XnView 1.92 and 1.92.1 allows user-assisted remote attackers to execute arbitrary code vi... |
| CVE-2008-1625 | — | — | 0.7% | Apr 2, 2008 | aavmker4.sys in avast! Home and Professional 4.7 for Windows does not properly validate input to IOCTL 0xb2d60030, which... |
| CVE-2008-1619 | — | — | 1.3% | Apr 2, 2008 | The ssm_i emulation in Xen 5.1 on IA64 architectures allows attackers to cause a denial of service (dom0 panic) via cert... |
| CVE-2008-1614 | — | — | 0.3% | Apr 2, 2008 | suPHP before 0.6.3 allows local users to gain privileges via (1) a race condition that involves multiple symlink changes... |
| CVE-2008-1515 | — | — | 2.0% | Apr 1, 2008 | The SOAP interface in OTRS 2.1.x before 2.1.8 and 2.2.x before 2.2.6 allows remote attackers to "read and modify objects... |
| CVE-2008-1612 | — | — | 1.9% | Apr 1, 2008 | The arrayShrink function (lib/Array.c) in Squid 2.6.STABLE17 allows attackers to cause a denial of service (process exit... |
| CVE-2008-1608 | — | — | 1.1% | Apr 1, 2008 | SQL injection vulnerability in postview.php in Clever Copy 3.0 allows remote attackers to execute arbitrary SQL commands... |
| CVE-2008-1604 | — | — | 1.2% | Apr 1, 2008 | Cross-site scripting (XSS) vulnerability in PerlMailer before 3.02 allows remote attackers to inject arbitrary web scrip... |
| CVE-2008-1606 | — | — | 2.1% | Apr 1, 2008 | Multiple directory traversal vulnerabilities in Elastic Path (EP) 4.1 and 4.1.1 allow remote attackers to (1) download a... |
| CVE-2008-1607 | — | — | 0.8% | Apr 1, 2008 | SQL injection vulnerability in haberoku.php in Serbay Arslanhan Bomba Haber 2.0 allows remote attackers to execute arbit... |
| CVE-2008-1605 | — | — | 1.9% | Apr 1, 2008 | The (1) ltmmCaptureCtrl Class, (2) ltmmConvertCtrl Class, and (3) ltmmPlayCtrl Class ActiveX controls (ltmm15.dll 15.1.0... |
| CVE-2008-1609 | — | — | 41.1% | Apr 1, 2008 | Multiple PHP remote file inclusion vulnerabilities in just another flat file (JAF) CMS 4.0 RC2 allow remote attackers to... |
| CVE-2008-1610 | — | — | 53.9% | Apr 1, 2008 | Stack-based buffer overflow in TallSoft Quick TFTP Server Pro 2.1 allows remote attackers to cause a denial of service o... |
| CVE-2008-1611 | — | — | 67.6% | Apr 1, 2008 | Stack-based buffer overflow in TFTP Server SP 1.4 for Windows allows remote attackers to cause a denial of service or ex... |
| CVE-2008-1603 | — | — | 1.1% | Apr 1, 2008 | Cross-site scripting (XSS) vulnerability in GNB DesignForm before 3.9 allows remote attackers to inject arbitrary web sc... |
| CVE-2008-1591 | — | — | 1.0% | Mar 31, 2008 | The pnVarPrepForStore function in PostNuke 0.764 and earlier skips input sanitization when magic_quotes_runtime is enabl... |
| CVE-2008-1599 | — | — | 0.4% | Mar 31, 2008 | The nddstat programs on IBM AIX 5.2, 5.3, and 6.1 do not properly handle environment variables, which allows local users... |
| CVE-2008-1600 | — | — | 0.4% | Mar 31, 2008 | The lsmcode program on IBM AIX 5.2, 5.3, and 6.1 does not properly handle environment variables, which allows local user... |
| CVE-2008-1592 | — | — | 0.4% | Mar 31, 2008 | MQSeries 5.1 in IBM WebSphere MQ 5.1 through 5.3.1 on the HP NonStop and Tandem NSK platforms does not require mqm group... |
| CVE-2008-1593 | — | — | 0.4% | Mar 31, 2008 | The checkpoint and restart feature in the kernel in IBM AIX 5.2, 5.3, and 6.1 does not properly protect kernel memory, w... |
| CVE-2008-1596 | — | — | 0.4% | Mar 31, 2008 | Trusted Execution in IBM AIX 6.1 uses an incorrect pathname argument in a call to the trustchk_block_write function, whi... |
| CVE-2008-1595 | — | — | 0.3% | Mar 31, 2008 | The proc filesystem in the kernel in IBM AIX 5.2 and 5.3 does not properly enforce directory permissions when a file exe... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now