2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-7278 | — | — | 2.0% | Mar 18, 2011 | The S/MIME feature in Open Ticket Request System (OTRS) before 2.2.5, and 2.3.x before 2.3.0-beta1, does not properly co... |
| CVE-2008-7277 | — | — | 1.5% | Mar 18, 2011 | Open Ticket Request System (OTRS) before 2.3.0-beta4 checks for the rw permission, instead of the configured merge permi... |
| CVE-2008-7276 | — | — | 0.3% | Mar 18, 2011 | Kernel/System/Web/Request.pm in Open Ticket Request System (OTRS) before 2.3.2 creates a directory under /tmp/ with 1274... |
| CVE-2008-7275 | — | — | 1.3% | Mar 18, 2011 | Multiple cross-site scripting (XSS) vulnerabilities in Open Ticket Request System (OTRS) before 2.3.3 allow remote attac... |
| CVE-2008-7274 | — | — | 1.0% | Feb 15, 2011 | IBM WebSphere Application Server (WAS) 6.1.0.9, when the JAAS Login functionality is enabled, allows attackers to perfor... |
| CVE-2008-7271 | — | — | 1.9% | Jan 13, 2011 | Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclips... |
| CVE-2008-7270 | — | — | 3.4% | Dec 6, 2010 | OpenSSL before 0.9.8j, when SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG is enabled, does not prevent modification of the cip... |
| CVE-2008-7269 | — | — | 9.3% | Dec 1, 2010 | Open redirect vulnerability in api.php in SiteEngine 5.x allows user-assisted remote attackers to redirect users to arbi... |
| CVE-2008-7268 | — | — | 1.6% | Dec 1, 2010 | The phpinfo function in SiteEngine 5.x allows remote attackers to obtain system information by setting the action parame... |
| CVE-2008-7267 | — | — | 1.2% | Dec 1, 2010 | SQL injection vulnerability in announcements.php in SiteEngine 5.x allows remote attackers to execute arbitrary SQL comm... |
| CVE-2008-7266 | — | — | 1.1% | Nov 26, 2010 | Cross-site scripting (XSS) vulnerability in an unspecified Shockwave Flash file in RSA Adaptive Authentication 2.x and 5... |
| CVE-2008-7265 | — | — | 3.2% | Nov 9, 2010 | The pr_data_xfer function in ProFTPD before 1.3.2rc3 allows remote authenticated users to cause a denial of service (CPU... |
| CVE-2008-7264 | — | — | 1.2% | Oct 19, 2010 | The ftp_QUIT function in ftpserver.py in pyftpdlib before 0.5.0 allows remote authenticated users to cause a denial of s... |
| CVE-2008-7263 | — | — | 1.4% | Oct 19, 2010 | ftpserver.py in pyftpdlib before 0.5.0 does not delay its response after receiving an invalid login attempt, which makes... |
| CVE-2008-7262 | — | — | 1.2% | Oct 19, 2010 | Multiple directory traversal vulnerabilities in FTPServer.py in pyftpdlib before 0.3.0 allow remote authenticated users ... |
| CVE-2008-7261 | — | — | 0.3% | Sep 20, 2010 | The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-010 records DEBUG messag... |
| CVE-2008-7258 | — | — | 1.1% | Aug 20, 2010 | The standardise function in Anibal Monsalve Salazar sSMTP 2.61 and 2.62 allows local users to cause a denial of service ... |
| CVE-2008-7257 | — | — | 11.6% | Jun 29, 2010 | CRLF injection vulnerability in +webvpn+/index.html in WebVPN on Cisco Adaptive Security Appliances (ASA) 5580 series de... |
| CVE-2008-4389 | — | — | 2.5% | Jun 17, 2010 | Symantec AppStream 5.2.x and Symantec Workspace Streaming (SWS) 6.1.x before 6.1 SP4 do not properly perform authenticat... |
| CVE-2008-7256 | — | — | 0.3% | Jun 3, 2010 | mm/shmem.c in the Linux kernel before 2.6.28-rc8, when strict overcommit is enabled and CONFIG_SECURITY is disabled, doe... |
| CVE-2008-7255 | — | — | 0.3% | Apr 20, 2010 | login_screen.tcl in aMSN (aka Alvaro's Messenger) before 0.97.1 saves a password after logout, which allows physically p... |
| CVE-2008-7254 | — | — | 1.9% | Apr 7, 2010 | Directory traversal vulnerability in includes/template-loader.php in Irmin CMS (formerly Pepsi CMS) 0.5 and 0.6 BETA2, w... |
| CVE-2008-3279 | — | — | 0.5% | Apr 5, 2010 | Untrusted search path vulnerability in libbrlttybba.so in brltty 3.7.2 allows local users to gain privileges via a craft... |
| CVE-2008-7253 | — | — | 2.1% | Jan 25, 2010 | The default configuration of the web server in IBM Lotus Domino Server, possibly 6.0 through 8.0, enables the HTTP TRACE... |
| CVE-2008-7252 | — | — | 2.7% | Jan 19, 2010 | libraries/File.class.php in phpMyAdmin 2.11.x before 2.11.10 uses predictable filenames for temporary files, which has u... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now