2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-0338Directory traversal vulnerability in the mwGetLocalFileName function in http.c in MiniWeb HTTP Server 0.8.19 allows remo...
CVE-2008-0335Cross-site scripting (XSS) vulnerability in BugTracker.NET before 2.7.2 allows remote attackers to inject arbitrary web ...
CVE-2008-0334Cross-site scripting (XSS) vulnerability in pm/language/spanish/preferences.php in PMachine Pro 2.4.1 allows remote atta...
CVE-2008-0333Directory traversal vulnerability in download_view_attachment.aspx in AfterLogic MailBee WebMail Pro 4.1 for ASP.NET all...
CVE-2008-0332Directory traversal vulnerability in arias/help/effect.php in aria 0.99-6 allows remote attackers to include and execute...
CVE-2008-0331Unspecified vulnerability in Funkwerk System Software before 7.4.1 PATCH 9 for certain Funkwerk Router / VPN devices all...
CVE-2008-0324Cisco Systems VPN Client IPSec Driver (CVPNDRVA.sys) 5.0.02.0090 allows local users to cause a denial of service (crash)...
CVE-2008-0027Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Commu...
CVE-2008-0302Untrusted search path vulnerability in apt-listchanges.py in apt-listchanges before 2.82 allows local users to execute a...
CVE-2008-0189Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its reque...
CVE-2008-0188Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its reque...
CVE-2008-0298KHTML WebKit as used in Apple Safari 2.x allows remote attackers to cause a denial of service (browser crash) via a craf...
CVE-2008-0299common.py in Paramiko 1.7.1 and earlier, when using threads or forked processes, does not properly use RandomPool, which...
CVE-2008-0297PhotoKorn allows remote attackers to obtain database credentials via a direct request to update/update3.php, which inclu...
CVE-2008-0295Heap-based buffer overflow in modules/access/rtsp/real_sdpplin.c in the Xine library, as used in VideoLAN VLC Media Play...
CVE-2008-0293Unspecified vulnerability in cron.php in FreeSeat before 1.1.5d, when format.php has certain modifications, allows remot...
CVE-2008-0296Heap-based buffer overflow in the libaccess_realrtsp plugin in VideoLAN VLC Media Player 0.8.6d and earlier on Windows m...
CVE-2008-0294Unspecified vulnerability in the seat-locking implementation in FreeSeat before 1.1.5d allows attackers to book a seat m...
CVE-2008-0291SQL injection vulnerability in showproduct.asp in RichStrong CMS allows remote attackers to execute arbitrary SQL comman...
CVE-2008-0292Cross-site scripting (XSS) vulnerability in photo_album.pl in Dansie Photo Album 1.0 allows remote attackers to inject a...
CVE-2008-0032Apple QuickTime before 7.4 allows remote attackers to execute arbitrary code via a movie file containing a Macintosh Res...
CVE-2008-0033Unspecified vulnerability in Apple QuickTime before 7.4 allows remote attackers to cause a denial of service (applicatio...
CVE-2008-0036Buffer overflow in Apple QuickTime before 7.4 allows remote attackers to execute arbitrary code via a crafted compressed...
CVE-2008-0122Off-by-one error in the inet_network function in libbind in ISC BIND 9.4.2 and earlier, as used in libc in FreeBSD 6.2 t...
CVE-2008-0216The ptsname function in FreeBSD 6.0 through 7.0-PRERELEASE does not properly verify that a certain portion of a device n...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now