2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-1149 | — | — | 0.9% | Mar 4, 2008 | phpMyAdmin before 2.11.5 accesses $_REQUEST to obtain some parameters instead of $_GET and $_POST, which allows attacker... |
| CVE-2008-1148 | — | — | 1.4% | Mar 4, 2008 | A certain pseudo-random number generator (PRNG) algorithm that uses ADD with 0 random hops (aka "Algorithm A0"), as used... |
| CVE-2008-1111 | — | — | 2.0% | Mar 4, 2008 | mod_cgi in lighttpd 1.4.18 sends the source code of CGI scripts instead of a 500 error when a fork failure occurs, which... |
| CVE-2008-1147 | — | — | 1.8% | Mar 4, 2008 | A certain pseudo-random number generator (PRNG) algorithm that uses XOR and 2-bit random hops (aka "Algorithm X2"), as u... |
| CVE-2008-1146 | — | — | 1.4% | Mar 4, 2008 | A certain pseudo-random number generator (PRNG) algorithm that uses XOR and 3-bit random hops (aka "Algorithm X3"), as u... |
| CVE-2008-1139 | — | — | 0.9% | Mar 4, 2008 | DESlock+ 3.2.6 and earlier, when DLMFENC.sys 1.0.0.26 and DLMFDISK.sys 1.2.0.27 are present, allows local users to gain ... |
| CVE-2008-1137 | — | — | 1.2% | Mar 4, 2008 | SQL injection vulnerability in the Garys Cookbook (com_garyscookbook) 1.1.1 and earlier component for Mambo and Joomla! ... |
| CVE-2008-1141 | — | — | 0.9% | Mar 4, 2008 | Memory leak in DLMFENC.sys 1.0.0.26 in DESlock+ 3.2.6 and earlier allows local users to cause a denial of service (kerne... |
| CVE-2008-1140 | — | — | 0.8% | Mar 4, 2008 | DLMFDISK.sys 1.2.0.27 in DESlock+ 3.2.6 and earlier allows local users to gain privileges via a certain DLKFDISK_IOCTL r... |
| CVE-2008-1138 | — | — | 0.9% | Mar 4, 2008 | DLMFENC.sys 1.0.0.26 in DESlock+ 3.2.6 and earlier allows local users to cause a denial of service (system crash) via a ... |
| CVE-2008-1135 | — | — | 1.3% | Mar 4, 2008 | OMEGA (aka Omegasoft) INterneSErvicesLosungen (INSEL) 7 generates different responses depending on whether or not a user... |
| CVE-2008-1134 | — | — | 2.2% | Mar 4, 2008 | OMEGA (aka Omegasoft) INterneSErvicesLosungen (INSEL) 7 supports authentication with a cookie that lacks a shared secret... |
| CVE-2008-1136 | — | — | 6.8% | Mar 4, 2008 | The Utils::runScripts function in src/utils.cpp in vdccm 0.92 through 0.10.0 in SynCE (SynCE-dccm) allows remote attacke... |
| CVE-2008-1079 | — | — | 1.4% | Mar 4, 2008 | The outboxWriteUnsent function in FTPThread.class in SendFile.jar for Beehive Software SendFile.NET uses hard-coded cred... |
| CVE-2008-1133 | — | — | 2.0% | Mar 4, 2008 | The Drupal.checkPlain function in Drupal 6.0 only escapes the first instance of a character in ECMAScript, which allows ... |
| CVE-2008-0930 | — | — | 0.4% | Mar 4, 2008 | w_editeur.c in XWine 1.0.1 for Debian GNU/Linux allows local users to overwrite or print arbitrary files via a symlink a... |
| CVE-2008-0931 | — | — | 0.4% | Mar 4, 2008 | w_export.c in XWine 1.0.1 on Debian GNU/Linux sets insecure permissions (0666) for /etc/wine/config, which might allow l... |
| CVE-2008-1129 | — | — | 1.5% | Mar 4, 2008 | Cross-site scripting (XSS) vulnerability in admin/users/self.php in XRMS CRM allows remote attackers to inject arbitrary... |
| CVE-2008-1130 | — | — | 0.3% | Mar 4, 2008 | Unspecified vulnerability in IBM WebSphere MQ 6.0.x before 6.0.2.2 and 5.3 before Fix Pack 14 allows attackers to bypass... |
| CVE-2008-1131 | — | — | 0.9% | Mar 4, 2008 | Cross-site scripting (XSS) vulnerability in Drupal 6.0 allows remote authenticated users to inject arbitrary web script ... |
| CVE-2008-1132 | — | — | 0.3% | Mar 4, 2008 | Untrusted search path vulnerability in src/mainwindow.c in Net Activity Viewer 0.2.1 allows local users with Net Activit... |
| CVE-2008-1127 | — | — | 3.0% | Mar 3, 2008 | Format string vulnerability in the cryactio function in Crysis 1.1.1.5879 allows remote authenticated users to execute a... |
| CVE-2008-1128 | — | — | 1.8% | Mar 3, 2008 | PHP remote file inclusion vulnerability in tourney/index.php in phpMyTourney 2 allows remote attackers to execute arbitr... |
| CVE-2008-1123 | — | — | 1.7% | Mar 3, 2008 | Multiple PHP remote file inclusion vulnerabilities in SiteBuilder Elite 1.2 allow remote attackers to execute arbitrary ... |
| CVE-2008-0928 | — | — | 0.4% | Mar 3, 2008 | Qemu 0.9.1 and earlier does not perform range checks for block device read or write requests, which allows guest host us... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now