2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-5695 | — | — | 12.0% | Dec 19, 2008 | wp-admin/options.php in WordPress MU before 1.3.2, and WordPress 2.3.2 and earlier, does not properly validate requests ... |
| CVE-2008-5694 | — | — | 2.2% | Dec 19, 2008 | PHP remote file inclusion vulnerability in lib/jpgraph/jpgraph_errhandler.inc.php in Sandbox 1.4.1 might allow remote at... |
| CVE-2008-5693 | — | — | 2.8% | Dec 19, 2008 | Ipswitch WS_FTP Server Manager 6.1.0.0 and earlier, and possibly other Ipswitch products, might allow remote attackers t... |
| CVE-2008-5692 | — | — | 7.8% | Dec 19, 2008 | Ipswitch WS_FTP Server Manager before 6.1.1, and possibly other Ipswitch products, allows remote attackers to bypass aut... |
| CVE-2008-5691 | — | — | 9.7% | Dec 19, 2008 | Heap-based buffer overflow in the Phoenician Casino FlashAX ActiveX control 1.0.0.7 allows remote attackers to execute a... |
| CVE-2008-5690 | — | — | 0.4% | Dec 19, 2008 | The Kerberos credential renewal feature in Sun Solaris 8, 9, and 10, and OpenSolaris build snv_01 through snv_104, allow... |
| CVE-2008-5689 | — | — | 1.3% | Dec 19, 2008 | tun in IP Tunnel in Solaris 10 and OpenSolaris snv_01 through snv_76 allows local users to cause a denial of service (pa... |
| CVE-2008-5688 | — | — | 1.1% | Dec 19, 2008 | MediaWiki 1.8.1, and other versions before 1.13.3, when the wgShowExceptionDetails variable is enabled, sometimes provid... |
| CVE-2008-5687 | — | — | 2.0% | Dec 19, 2008 | MediaWiki 1.11, and other versions before 1.13.3, does not properly protect against the download of backups of deleted i... |
| CVE-2008-5686 | — | — | 2.1% | Dec 19, 2008 | IBM Tivoli Provisioning Manager (TPM) before 5.1.1.1 IF0006, when its LDAP service is shared with other applications, do... |
| CVE-2008-5685 | — | — | 2.6% | Dec 19, 2008 | Sun ScApp firmware 5.18.x, 5.19.x, and 5.20.0 through 5.20.10 on Sun Fire and Netra platforms allows remote attackers to... |
| CVE-2008-5684 | — | — | 2.4% | Dec 19, 2008 | Unspecified vulnerability in the X Inter Client Exchange library (aka libICE) in Sun Solaris 8 through 10 and OpenSolari... |
| CVE-2008-5252 | — | — | 0.7% | Dec 19, 2008 | Cross-site request forgery (CSRF) vulnerability in the Special:Import feature in MediaWiki 1.3.0 through 1.6.10, 1.12.x ... |
| CVE-2008-5250 | — | — | 1.1% | Dec 19, 2008 | Cross-site scripting (XSS) vulnerability in MediaWiki before 1.6.11, 1.12.x before 1.12.2, and 1.13.x before 1.13.3, whe... |
| CVE-2008-5249 | — | — | 2.0% | Dec 19, 2008 | Cross-site scripting (XSS) vulnerability in MediaWiki 1.13.0 through 1.13.2 allows remote attackers to inject arbitrary ... |
| CVE-2008-5086 | — | — | 0.4% | Dec 19, 2008 | Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is read-only, which allows local users to b... |
| CVE-2008-5078 | — | — | 3.1% | Dec 19, 2008 | Multiple buffer overflows in the (1) recognize_eps_file function (src/psgen.c) and (2) tilde_subst function (src/util.c)... |
| CVE-2008-4122 | HIGH | 7.5 | 1.3% | Dec 19, 2008 | Joomla! 1.5.8 does not set the secure flag for the session cookie in an https session, which makes it easier for remote ... |
| CVE-2008-1094 | — | — | 2.0% | Dec 19, 2008 | SQL injection vulnerability in index.cgi in the Account View page in Barracuda Spam Firewall (BSF) before 3.5.12.007 all... |
| CVE-2008-0971 | — | — | 1.5% | Dec 19, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in index.cgi in Barracuda Spam Firewall (BSF) before 3.5.12.007, Mes... |
| CVE-2008-5683 | — | — | 1.5% | Dec 19, 2008 | Unspecified vulnerability in Opera before 9.63 allows remote attackers to "reveal random data" via unknown vectors. |
| CVE-2008-5682 | — | — | 1.2% | Dec 19, 2008 | Cross-site scripting (XSS) vulnerability in Opera before 9.63 allows remote attackers to inject arbitrary web script or ... |
| CVE-2008-5681 | — | — | 1.1% | Dec 19, 2008 | Opera before 9.63 does not block unspecified "scripted URLs" during the feed preview, which allows remote attackers to r... |
| CVE-2008-5680 | — | — | 7.5% | Dec 19, 2008 | Multiple buffer overflows in Opera before 9.63 might allow (1) remote attackers to execute arbitrary code via a crafted ... |
| CVE-2008-5679 | — | — | 3.3% | Dec 19, 2008 | The HTML parsing engine in Opera before 9.63 allows remote attackers to execute arbitrary code via crafted web pages tha... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now