2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-1395 | — | — | 1.3% | Mar 20, 2008 | Plone CMS does not record users' authentication states, and implements the logout feature solely on the client side, whi... |
| CVE-2008-1393 | — | — | 2.9% | Mar 20, 2008 | Plone CMS 3.0.5, and probably other 3.x versions, places a base64 encoded form of the username and password in the __ac ... |
| CVE-2008-1392 | — | — | 2.7% | Mar 20, 2008 | The default configuration of VMware Workstation 6.0.2, VMware Player 2.0.x before 2.0.3, and VMware ACE 2.0.x before 2.0... |
| CVE-2008-1364 | — | — | 2.0% | Mar 20, 2008 | Unspecified vulnerability in the DHCP service in VMware Workstation 5.5.x before 5.5.6, VMware Player 1.0.x before 1.0.6... |
| CVE-2008-1363 | — | — | 0.4% | Mar 20, 2008 | VMware Workstation 6.0.x before 6.0.3 and 5.5.x before 5.5.6, VMware Player 2.0.x before 2.0.3 and 1.0.x before 1.0.6, V... |
| CVE-2008-1362 | — | — | 0.4% | Mar 20, 2008 | VMware Workstation 6.0.x before 6.0.3 and 5.5.x before 5.5.6, VMware Player 2.0.x before 2.0.3 and 1.0.x before 1.0.6, V... |
| CVE-2008-1361 | — | — | 0.3% | Mar 20, 2008 | VMware Workstation 6.0.x before 6.0.3 and 5.5.x before 5.5.6, VMware Player 2.0.x before 2.0.3 and 1.0.x before 1.0.6, V... |
| CVE-2008-1340 | — | — | 1.7% | Mar 20, 2008 | Virtual Machine Communication Interface (VMCI) in VMware Workstation 6.0.x before 6.0.3, VMware Player 2.0.x before 2.0.... |
| CVE-2008-1333 | — | — | 3.2% | Mar 20, 2008 | Format string vulnerability in Asterisk Open Source 1.6.x before 1.6.0-beta6 might allow remote attackers to execute arb... |
| CVE-2008-1332 | — | — | 2.3% | Mar 20, 2008 | Unspecified vulnerability in Asterisk Open Source 1.2.x before 1.2.27, 1.4.x before 1.4.18.1 and 1.4.19-rc3; Business Ed... |
| CVE-2008-0707 | — | — | 0.5% | Mar 20, 2008 | HP StorageWorks Library and Tape Tools (LTT) before 4.5 SR1 on HP-UX B.11.11 and B.11.23 allows local users to gain priv... |
| CVE-2008-0889 | — | — | 0.4% | Mar 20, 2008 | Red Hat Directory Server 8.0, when running on Red Hat Enterprise Linux, uses insecure permissions for the redhat-idm-con... |
| CVE-2008-0164 | — | — | 0.6% | Mar 20, 2008 | Multiple cross-site request forgery (CSRF) vulnerabilities in Plone CMS 3.0.5 and 3.0.6 allow remote attackers to (1) ad... |
| CVE-2008-0063 | HIGH | 7.5 | 3.5% | Mar 19, 2008 | The Kerberos 4 support in KDC in MIT Kerberos 5 (krb5kdc) does not properly clear the unused portion of a buffer when ge... |
| CVE-2008-0062 | CRITICAL | 9.8 | 10.1% | Mar 19, 2008 | KDC in MIT Kerberos 5 (krb5kdc) does not set a global variable for some krb4 message types, which allows remote attacker... |
| CVE-2008-0947 | — | — | 8.8% | Mar 19, 2008 | Buffer overflow in the RPC library used by libgssrpc and kadmind in MIT Kerberos 5 (krb5) 1.4 through 1.6.3 allows remot... |
| CVE-2008-1002 | — | — | 3.0% | Mar 19, 2008 | Cross-site scripting (XSS) vulnerability in Apple Safari before 3.1 allows remote attackers to inject arbitrary web scri... |
| CVE-2008-1003 | — | — | 1.8% | Mar 19, 2008 | Cross-site scripting (XSS) vulnerability in WebCore, as used in Apple Safari before 3.1, allows remote attackers to inje... |
| CVE-2008-1004 | — | — | 1.8% | Mar 19, 2008 | Cross-site scripting (XSS) vulnerability in WebCore, as used in Apple Safari before 3.1, allows remote attackers to inje... |
| CVE-2008-1007 | — | — | 2.8% | Mar 19, 2008 | WebCore, as used in Apple Safari before 3.1, does not enforce the frame navigation policy for Java applets, which allows... |
| CVE-2008-0948 | — | — | 7.3% | Mar 19, 2008 | Buffer overflow in the RPC library (lib/rpc/rpc_dtablesize.c) used by libgssrpc and kadmind in MIT Kerberos 5 (krb5) 1.2... |
| CVE-2008-1005 | — | — | 0.4% | Mar 19, 2008 | WebCore, as used in Apple Safari before 3.1, does not properly mask the password field when reverse conversion is used w... |
| CVE-2008-1011 | — | — | 1.9% | Mar 19, 2008 | Cross-site scripting (XSS) vulnerability in WebKit, as used in Apple Safari before 3.1, allows remote attackers to injec... |
| CVE-2008-1010 | — | — | 4.6% | Mar 19, 2008 | Buffer overflow in WebKit, as used in Apple Safari before 3.1, allows remote attackers to execute arbitrary code via cra... |
| CVE-2008-1009 | — | — | 1.8% | Mar 19, 2008 | Cross-site scripting (XSS) vulnerability in WebCore, as used in Apple Safari before 3.1, allows remote attackers to inje... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now