2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-2368 | — | — | 0.2% | Jan 20, 2009 | Red Hat Certificate System 7.2 stores passwords in cleartext in the UserDirEnrollment log, the RA wizard installer log, ... |
| CVE-2008-2367 | — | — | 0.2% | Jan 20, 2009 | Red Hat Certificate System 7.2 uses world-readable permissions for password.conf and unspecified other configuration fil... |
| CVE-2008-5911 | — | — | 6.2% | Jan 20, 2009 | Multiple buffer overflows in RealNetworks Helix Server and Helix Mobile Server 11.x before 11.1.8 and 12.x before 12.0.1... |
| CVE-2008-5910 | — | — | 0.4% | Jan 16, 2009 | Unspecified vulnerability in txzonemgr in Sun OpenSolaris has unknown impact and local attack vectors, related to a "Tem... |
| CVE-2008-5909 | — | — | 0.3% | Jan 16, 2009 | Unspecified vulnerability in conv_lpd in Sun OpenSolaris has unknown impact and local attack vectors, related to imprope... |
| CVE-2008-5908 | — | — | 0.3% | Jan 16, 2009 | Unspecified vulnerability in the root/boot archive tool in Sun OpenSolaris has unknown impact and local attack vectors, ... |
| CVE-2008-4770 | — | — | 4.1% | Jan 16, 2009 | The CMsgReader::readRect function in the VNC Viewer component in RealVNC VNC Free Edition 4.0 through 4.1.2, Enterprise ... |
| CVE-2008-4444 | — | — | 2.6% | Jan 16, 2009 | Cisco Unified IP Phone (aka SIP phone) 7960G and 7940G with firmware P0S3-08-9-00 and possibly other versions before 8.1... |
| CVE-2008-3821 | — | — | 5.4% | Jan 16, 2009 | Multiple cross-site scripting (XSS) vulnerabilities in the HTTP server in Cisco IOS 11.0 through 12.4 allow remote attac... |
| CVE-2008-3818 | — | — | 2.0% | Jan 16, 2009 | Cisco ONS 15310-CL, 15310-MA, 15327, 15454, 15454 SDH, and 15600 with software 7.0.2 through 7.0.6, 7.2.2, 8.0.x, 8.5.1,... |
| CVE-2008-5907 | — | — | 2.6% | Jan 15, 2009 | The png_check_keyword function in pngwutil.c in libpng before 1.0.42, and 1.2.x before 1.2.34, might allow context-depen... |
| CVE-2008-5906 | — | — | 2.0% | Jan 15, 2009 | Eval injection vulnerability in the web interface plugin in KTorrent before 3.1.4 allows remote attackers to execute arb... |
| CVE-2008-5905 | — | — | 2.5% | Jan 15, 2009 | The web interface plugin in KTorrent before 3.1.4 allows remote attackers to bypass intended access restrictions and upl... |
| CVE-2008-5904 | — | — | 7.3% | Jan 15, 2009 | The rdp_rdp_process_color_pointer_pdu function in rdp/rdp_rdp.c in xrdp 0.4.1 and earlier allows remote RDP servers to h... |
| CVE-2008-5903 | — | — | 3.2% | Jan 15, 2009 | Array index error in the xrdp_bitmap_def_proc function in xrdp/funcs.c in xrdp 0.4.1 and earlier allows remote attackers... |
| CVE-2008-5902 | — | — | 3.4% | Jan 15, 2009 | Buffer overflow in the xrdp_bitmap_invalidate function in xrdp/xrdp_bitmap.c in xrdp 0.4.1 and earlier allows remote att... |
| CVE-2008-4835 | CRITICAL | 9.8 | 44.9% | Jan 14, 2009 | SMB in the Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, an... |
| CVE-2008-4834 | — | — | 45.8% | Jan 14, 2009 | Buffer overflow in SMB in the Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2 ... |
| CVE-2008-5463 | — | — | 0.9% | Jan 14, 2009 | Unspecified vulnerability in the PeopleSoft Enterprise Campus Solutions component in Oracle PeopleSoft Enterprise and JD... |
| CVE-2008-5462 | — | — | 1.2% | Jan 14, 2009 | Unspecified vulnerability in the WebLogic Portal component in BEA Product Suite 10.3, 10.2, 10.0 MP1, 9.2 MP3, and 8.1 S... |
| CVE-2008-5461 | — | — | 1.4% | Jan 14, 2009 | Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 S... |
| CVE-2008-5460 | — | — | 1.1% | Jan 14, 2009 | Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, and 9.0 al... |
| CVE-2008-5459 | — | — | 1.3% | Jan 14, 2009 | Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3 allows remote attackers to affect c... |
| CVE-2008-5458 | — | — | 1.0% | Jan 14, 2009 | Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10 and CU2 ... |
| CVE-2008-5457 | — | — | 61.3% | Jan 14, 2009 | Unspecified vulnerability in the Oracle BEA WebLogic Server Plugins for Apache, Sun and IIS web servers component in BEA... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now