2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-5711 | — | — | 32.7% | Dec 24, 2008 | Heap-based buffer overflow in the Facebook PhotoUploader ActiveX control 5.0.14.0 and earlier allows remote attackers to... |
| CVE-2008-5710 | — | — | 1.4% | Dec 24, 2008 | Multiple unspecified vulnerabilities in the web management interface in Avaya Communication Manager (CM) 3.1.x, 4.0.3, a... |
| CVE-2008-5709 | — | — | 3.3% | Dec 24, 2008 | Multiple unspecified vulnerabilities in the web management interface in Avaya Communication Manager (CM) 3.1 before 3.1.... |
| CVE-2008-5708 | — | — | 2.6% | Dec 24, 2008 | redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative us... |
| CVE-2008-2382 | — | — | 6.6% | Dec 24, 2008 | The protocol_client_msg function in vnc.c in the VNC server in (1) Qemu 0.9.1 and earlier and (2) KVM kvm-79 and earlier... |
| CVE-2008-5707 | — | — | 0.9% | Dec 24, 2008 | SQL injection vulnerability in urunler.asp in Iltaweb Alisveris Sistemi allows remote attackers to execute arbitrary SQL... |
| CVE-2008-5557 | — | — | 7.4% | Dec 23, 2008 | Heap-based buffer overflow in ext/mbstring/libmbfl/filters/mbfilter_htmlent.c in the mbstring extension in PHP 4.3.0 thr... |
| CVE-2008-5514 | — | — | 1.8% | Dec 23, 2008 | Off-by-one error in the rfc822_output_char function in the RFC822BUFFER routines in the University of Washington (UW) c-... |
| CVE-2008-4305 | — | — | 3.1% | Dec 23, 2008 | Static code injection vulnerability in installation/setup.php in phpCollab 2.5 rc3 and earlier allows remote authenticat... |
| CVE-2008-4304 | — | — | 3.0% | Dec 23, 2008 | general/login.php in phpCollab 2.5 rc3 and earlier allows remote attackers to execute arbitrary commands via shell metac... |
| CVE-2008-4303 | — | — | 1.2% | Dec 23, 2008 | Multiple SQL injection vulnerabilities in phpCollab 2.5 rc3, 2.4, and earlier allow remote attackers to execute arbitrar... |
| CVE-2008-2435 | — | — | 7.0% | Dec 23, 2008 | Use-after-free vulnerability in the Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_Active... |
| CVE-2008-2434 | — | — | 7.0% | Dec 23, 2008 | The Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_ActiveX.dll allows remote attackers to... |
| CVE-2008-5706 | — | — | 0.8% | Dec 22, 2008 | The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and earlie... |
| CVE-2008-5705 | — | — | 5.4% | Dec 22, 2008 | The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and earlie... |
| CVE-2008-5704 | — | — | 1.2% | Dec 22, 2008 | src/unit_test.c in gpsdrive (aka gpsdrive-scripts) 2.10~pre4 might allow local users to overwrite arbitrary files via a ... |
| CVE-2008-5703 | — | — | 0.3% | Dec 22, 2008 | gpsdrive (aka gpsdrive-scripts) 2.10~pre4 allows local users to overwrite arbitrary files via a symlink attack on the (a... |
| CVE-2008-5702 | — | — | 0.5% | Dec 22, 2008 | Buffer underflow in the ibwdt_ioctl function in drivers/watchdog/ib700wdt.c in the Linux kernel before 2.6.28-rc1 might ... |
| CVE-2008-5701 | — | — | 0.4% | Dec 22, 2008 | Array index error in arch/mips/kernel/scall64-o32.S in the Linux kernel before 2.6.28-rc8 on 64-bit MIPS platforms allow... |
| CVE-2008-5700 | — | — | 0.4% | Dec 22, 2008 | libata in the Linux kernel before 2.6.27.9 does not set minimum timeouts for SG_IO requests, which allows local users to... |
| CVE-2008-5699 | — | — | 0.3% | Dec 22, 2008 | The name service cache daemon (nscd) in Sun Solaris 10 and OpenSolaris snv_50 through snv_104 does not properly check pe... |
| CVE-2008-5698 | — | — | 3.5% | Dec 22, 2008 | HTMLTokenizer::scriptHandler in Konqueror in KDE 3.5.9 and 3.5.10 allows remote attackers to cause a denial of service (... |
| CVE-2008-5697 | — | — | 2.2% | Dec 22, 2008 | The skype_tool.copy_num method in the Skype extension BETA 2.2.0.95 for Firefox allows remote attackers to write arbitra... |
| CVE-2008-2380 | — | — | 1.8% | Dec 22, 2008 | SQL injection vulnerability in authpgsqllib.c in Courier-Authlib before 0.62.0, when a non-Latin locale Postgres databas... |
| CVE-2008-5696 | — | — | 3.3% | Dec 19, 2008 | Novell NetWare 6.5 before Support Pack 8, when an OES2 Linux server is installed into the NDS tree, does not require a p... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now