2008 CVE Vulnerabilities

7,179 CVEs published in 2008.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2008-10004CRITICAL9.8A vulnerability was found in Email Registration 5.x-2.1 on Drupal. It has been declared as critical. This vulnerability ...
CVE-2008-10003CRITICAL9.8A vulnerability was found in iGamingModules flashgames 1.1.0. It has been classified as critical. Affected is an unknown...
CVE-2008-7291CRITICAL9.8gri before 2.12.18 generates temporary files in an insecure way.
CVE-2008-7109CRITICAL9.8The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 allows remote attackers to bypass authorization and...
CVE-2008-4835CRITICAL9.8SMB in the Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, an...
CVE-2008-5784CRITICAL9.8V3 Chat - Profiles/Dating Script 3.0.2 allows remote attackers to bypass authentication and gain administrative access b...
CVE-2008-3465CRITICAL9.8Heap-based buffer overflow in an API in GDI in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vist...
CVE-2008-5038CRITICAL9.8Use-after-free vulnerability in the NetWare Core Protocol (NCP) feature in Novell eDirectory 8.7.3 SP10 before 8.7.3 SP1...
CVE-2008-4250CRITICAL9.8The Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 20...
CVE-2008-3612CRITICAL9.8The Networking subsystem in Apple iPod touch 2.0 through 2.0.2, and iPhone 2.0 through 2.0.2, uses predictable TCP initi...
CVE-2008-3738CRITICAL9.1Session fixation vulnerability in SpaceTag LacoodaST 2.1.3 and earlier allows remote attackers to hijack web sessions vi...
CVE-2008-2433CRITICAL9.8The web management console in Trend Micro OfficeScan 7.0 through 8.0, Worry-Free Business Security 5.0, and Client/Serve...
CVE-2008-2369CRITICAL9.1manzier.pxt in Red Hat Network Satellite Server before 5.1.1 has a hard-coded authentication key, which allows remote at...
CVE-2008-3604CRITICAL9.8SQL injection vulnerability in bannerclick.php in ZeeBuddy 2.1 allows remote attackers to execute arbitrary SQL commands...
CVE-2008-2374CRITICAL9.8src/sdp.c in bluez-libs 3.30 in BlueZ, and other bluez-libs before 3.34 and bluez-utils before 3.34 versions, does not v...
CVE-2008-2108CRITICAL9.8The GENERATE_SEED macro in PHP 4.x before 4.4.8 and 5.x before 5.2.5, when running on 64-bit systems, performs a multipl...
CVE-2008-0599CRITICAL9.8The init_request_info function in sapi/cgi/cgi_main.c in PHP before 5.2.6 does not properly consider operator precedence...
CVE-2008-0961CRITICAL9.8EMV DiskXtender 6.20.060 has a hard-coded login and password, which allows remote attackers to bypass authentication via...
CVE-2008-1511CRITICAL9.8Multiple PHP remote file inclusion vulnerabilities in ooComments 1.0 allow remote attackers to execute arbitrary PHP cod...
CVE-2008-1160CRITICAL9.8ZyXEL ZyWALL 1050 has a hard-coded password for the Quagga and Zebra processes that is not changed when it is set by a u...
CVE-2008-0062CRITICAL9.8KDC in MIT Kerberos 5 (krb5kdc) does not set a global variable for some krb4 message types, which allows remote attacker...
CVE-2008-0174CRITICAL9.8GE Fanuc Proficy Real-Time Information Portal 2.6 and earlier uses HTTP Basic Authentication, which transmits usernames ...
CVE-2008-0081CRITICAL9.8Unspecified vulnerability in Microsoft Excel 2000 SP3 through 2003 SP2, Viewer 2003, and Office 2004 for Mac allows user...

Check if your code is affected by 2008 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now