2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-5401 | — | — | 7.9% | Dec 10, 2008 | Stack-based buffer overflow in the image tooltip implementation in Trillian before 3.1.12.0 allows remote attackers to e... |
| CVE-2008-5400 | — | — | 0.7% | Dec 10, 2008 | Multiple cross-site request forgery (CSRF) vulnerabilities in mvnForum before 1.2.1 GA allow remote attackers to (1) cre... |
| CVE-2008-5399 | — | — | 1.3% | Dec 10, 2008 | Cross-site scripting (XSS) vulnerability in the listonlineusers (aka "Who's online") component in mvnForum before 1.2.1 ... |
| CVE-2008-5414 | — | — | 2.3% | Dec 10, 2008 | Unspecified vulnerability in the Feature Pack for Web Services in the Web Services Security component in IBM WebSphere A... |
| CVE-2008-5413 | — | — | 1.5% | Dec 10, 2008 | PerfServlet in the PMI/Performance Tools component in IBM WebSphere Application Server (WAS) 7 before 7.0.0.1 allows att... |
| CVE-2008-5412 | — | — | 2.3% | Dec 10, 2008 | Unspecified vulnerability in IBM WebSphere Application Server (WAS) 7 before 7.0.0.1 on Windows has unknown impact and a... |
| CVE-2008-5411 | — | — | 1.4% | Dec 10, 2008 | IBM WebSphere Application Server (WAS) 7 before 7.0.0.1 sends SSL traffic over "unsecured TCP," which makes it easier fo... |
| CVE-2008-5410 | — | — | 2.5% | Dec 10, 2008 | The PK11_SESSION cache in the OpenSSL PKCS#11 engine in Sun Solaris 10 does not maintain reference counts for operations... |
| CVE-2008-5305 | — | — | 4.6% | Dec 10, 2008 | Eval injection vulnerability in TWiki before 4.2.4 allows remote attackers to execute arbitrary Perl code via the %SEARC... |
| CVE-2008-5304 | — | — | 2.2% | Dec 10, 2008 | Cross-site scripting (XSS) vulnerability in TWiki before 4.2.4 allows remote attackers to inject arbitrary web script or... |
| CVE-2008-4311 | — | — | 0.4% | Dec 10, 2008 | The default configuration of system.conf in D-Bus (aka DBus) before 1.2.6 omits the send_type attribute in certain rules... |
| CVE-2008-5398 | — | — | 2.0% | Dec 9, 2008 | Tor before 0.2.0.32 does not properly process the ClientDNSRejectInternalAddresses configuration option in situations wh... |
| CVE-2008-5397 | — | — | 0.4% | Dec 9, 2008 | Tor before 0.2.0.32 does not properly process the (1) User and (2) Group configuration options, which might allow local ... |
| CVE-2008-5396 | — | — | 0.3% | Dec 9, 2008 | Array index error in the (1) torisa.c and (2) dahdi/tor2.c drivers in Zaptel (aka DAHDI) 1.4.11 and earlier allows local... |
| CVE-2008-5395 | — | — | 0.4% | Dec 9, 2008 | The parisc_show_stack function in arch/parisc/kernel/traps.c in the Linux kernel before 2.6.28-rc7 on PA-RISC allows loc... |
| CVE-2008-5394 | — | — | 0.9% | Dec 9, 2008 | /bin/login in shadow 4.0.18.1 in Debian GNU/Linux, and probably other Linux distributions, allows local users in the utm... |
| CVE-2008-5393 | — | — | 2.3% | Dec 9, 2008 | UPR-Kernel in Ubuntu Privacy Remix (UPR) before 8.04_r1 includes kernel support for mounting RAID arrays, which might al... |
| CVE-2008-5387 | — | — | 0.3% | Dec 9, 2008 | Buffer overflow in autoconf6 in IBM AIX 6.1.0 through 6.1.2, when Role-Based Access Control is enabled, allows local use... |
| CVE-2008-5386 | — | — | 0.3% | Dec 9, 2008 | Buffer overflow in ndp in IBM AIX 6.1.0 through 6.1.2, when the netcd daemon is running, allows local users to gain priv... |
| CVE-2008-5385 | — | — | 0.3% | Dec 9, 2008 | enq in bos.rte.printers in IBM AIX 6.1.0 through 6.1.2, when a print queue is defined in /etc/qconfig, allows local user... |
| CVE-2008-5384 | — | — | 0.3% | Dec 9, 2008 | crontab in bos.rte.cron in IBM AIX 6.1.0 through 6.1.2 allows local users with aix.system.config.cron authorization to g... |
| CVE-2008-5383 | — | — | 4.7% | Dec 9, 2008 | Stack-based buffer overflow in National Instruments Electronics Workbench allows user-assisted attackers to cause a deni... |
| CVE-2008-5382 | — | — | 0.7% | Dec 9, 2008 | Cross-site request forgery (CSRF) vulnerability in I-O DATA DEVICE HDL-F160, HDL-F250, HDL-F300, and HDL-F320 firmware b... |
| CVE-2008-5381 | — | — | 4.8% | Dec 9, 2008 | Buffer overflow in the URL processing in ffdshow (aka ffdshow-tryout) before SVN revision 2347 allows remote attackers t... |
| CVE-2008-5277 | — | — | 3.4% | Dec 9, 2008 | PowerDNS before 2.9.21.2 allows remote attackers to cause a denial of service (daemon crash) via a CH HINFO query. |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now