2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2008-6580The Red_Reservations script for ColdFusion stores sensitive information under the web root with insufficient access cont...
CVE-2008-6579Nortel Communication Server 1000 4.50.x allows remote attackers to obtain Web application structure via unknown vectors ...
CVE-2008-6578Multiple unspecified vulnerabilities in Nortel Communication Server 1000 4.50.x allow remote attackers to execute arbitr...
CVE-2008-6577Nortel MG1000S, Signaling Server, and Call Server on the Communications Server 1000 (CS1K) 4.50.x contain multiple unspe...
CVE-2008-6576Unspecified vulnerability in the "session limitation technique" in the FTP service on Nortel Communications Server 1000 ...
CVE-2008-6575Unspecified vulnerability in the SIP server in SIP Enablement Services (SES) in Avaya Communication Manager 3.1.x and 4....
CVE-2008-6574Unspecified vulnerability in SIP Enablement Services (SES) in Avaya Communication Manager 3.1.x and 4.x allows remote at...
CVE-2008-6573Multiple SQL injection vulnerabilities in Avaya SIP Enablement Services (SES) in Avaya Avaya Communication Manager 3.x, ...
CVE-2008-4825Multiple buffer overflows in UltraISO 9.3.1.2633, and possibly other versions before 9.3.3.2685, allow user-assisted att...
CVE-2008-3871Multiple format string vulnerabilities in UltraISO 9.3.1.2633, and possibly other versions before 9.3.3.2685, allow user...
CVE-2008-6572SQL injection vulnerability in search_results.php in ABK-Soft AbleDating 2.4 allows remote attackers to execute arbitrar...
CVE-2008-6571Multiple cross-site scripting (XSS) vulnerabilities in LinPHA before 1.3.4 might allow remote attackers to inject arbitr...
CVE-2008-6570Cross-site scripting (XSS) vulnerability in the RSS reader in Cybozu Garoon 2.0.0 through 2.1.3 allows remote attackers ...
CVE-2008-6569Session fixation vulnerability in Cybozu Garoon 2.0.0 through 2.1.3 allows remote attackers to hijack web sessions via t...
CVE-2008-6568Unrestricted file upload vulnerability in Yehe 2.0 allows remote attackers to execute arbitrary code by uploading a file...
CVE-2008-6567Multiple cross-site scripting (XSS) vulnerabilities in Gallarific Free Edition allow remote attackers to inject arbitrar...
CVE-2008-6566Unspecified vulnerability in Octopussy before 0.9.5.8 has unknown impact and attack vectors related to a "major security...
CVE-2008-6565Cross-site scripting (XSS) vulnerability in Invision Power Board 2.3.1 and earlier allows remote attackers to inject arb...
CVE-2008-6564Nortel UNIStim protocol, as used in Communication Server 1000 and other products, uses predictable sequence numbers, whi...
CVE-2008-6563Buffer overflow in the XML parser in Trillian 3.1.9.0, and possibly earlier, allows remote attackers to cause a denial o...
CVE-2008-6562Cross-site scripting (XSS) vulnerability in jax_linklists.php in Jack (tR) Jax LinkLists 1.00 allows remote attackers to...
CVE-2008-6561Citrix Presentation Server Client for Windows before 10.200 does not clear "credential information" from process memory ...
CVE-2008-6560Buffer overflow in CMAN - The Cluster Manager before 2.03.09-1 on Fedora 9 and Red Hat Enterprise Linux (RHEL) 5 allows ...
CVE-2008-6559Merge mcd in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local users to gain root privileges via a crafted -d argument ...
CVE-2008-6558Untrusted search path vulnerability in (1) hvdisp and (2) rcvm in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local use...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now