2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-10002 | MEDIUM | 6.1 | 0.5% | Mar 5, 2023 | A vulnerability has been found in cfire24 ajaxlife up to 0.3.2 and classified as problematic. This vulnerability affects... |
| CVE-2008-10001 | MEDIUM | 6.1 | 0.6% | Mar 28, 2022 | A vulnerability, which was classified as problematic, has been found in Pro2col Stingray FTS. The manipulation of the ar... |
| CVE-2008-2544 | MEDIUM | 5.5 | 0.3% | May 27, 2021 | Mounting /proc filesystem via chroot command silently mounts it in read-write mode. The user could bypass the chroot env... |
| CVE-2008-3280 | MEDIUM | 5.9 | 4.0% | May 21, 2021 | It was found that various OpenID Providers (OPs) had TLS Server Certificates that used weak keys, as a result of the Deb... |
| CVE-2008-5083 | MEDIUM | 6.5 | 0.9% | Nov 8, 2019 | In JON 2.1.x before 2.1.2 SP1, users can obtain unauthorized security information about private resources managed by JBo... |
| CVE-2008-5180 | MEDIUM | 5.3 | 68.0% | Nov 20, 2008 | Microsoft Communicator, and Communicator in Microsoft Office 2010 beta, allows remote attackers to cause a denial of ser... |
| CVE-2008-4989 | MEDIUM | 5.9 | 1.9% | Nov 13, 2008 | The _gnutls_x509_verify_certificate function in lib/x509/verify.c in libgnutls in GnuTLS before 2.6.1 trusts certificate... |
| CVE-2008-4996 | MEDIUM | 5.5 | 0.4% | Nov 7, 2008 | init in initramfs-tools 0.92f allows local users to overwrite arbitrary files via a symlink attack on the /tmp/initramfs... |
| CVE-2008-3474 | MEDIUM | 6.5 | 28.0% | Oct 15, 2008 | Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, whi... |
| CVE-2008-4302 | MEDIUM | 5.5 | 0.6% | Sep 29, 2008 | fs/splice.c in the splice subsystem in the Linux kernel before 2.6.22.2 does not properly handle a failure of the add_to... |
| CVE-2008-4128 | MEDIUM | 4.3 | 12.0% | Sep 18, 2008 | Multiple cross-site request forgery (CSRF) vulnerabilities in the HTTP Administration component in Cisco IOS 12.4 on the... |
| CVE-2008-3937 | MEDIUM | 6.1 | 1.4% | Sep 5, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in Open Media Collectors Database (OpenDb) 1.0.6 allow remote attack... |
| CVE-2008-3935 | MEDIUM | 6.1 | 1.0% | Sep 5, 2008 | Cross-site scripting (XSS) vulnerability in DIC shop_v50 3.0 and earlier and shop_v52 2.0 and earlier allows remote atta... |
| CVE-2008-3893 | MEDIUM | 5.5 | 1.5% | Sep 3, 2008 | Microsoft Bitlocker in Windows Vista before SP1 stores pre-boot authentication passwords in the BIOS Keyboard buffer and... |
| CVE-2008-3281 | MEDIUM | 6.5 | 2.5% | Aug 27, 2008 | libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allow... |
| CVE-2008-3775 | MEDIUM | 4.4 | 0.2% | Aug 22, 2008 | Folder Lock 5.9.5 and earlier uses weak encryption (ROT-25) for the password, which allows local administrators to obtai... |
| CVE-2008-3275 | MEDIUM | 5.5 | 0.5% | Aug 12, 2008 | The (1) real_lookup and (2) __lookup_hash functions in fs/namei.c in the vfs implementation in the Linux kernel before 2... |
| CVE-2008-3397 | MEDIUM | 6.1 | 0.9% | Jul 31, 2008 | Cross-site scripting (XSS) vulnerability in Runesoft Cerberus CMS before 3_1.4_0.9 allows remote attackers to inject arb... |
| CVE-2008-2951 | MEDIUM | 6.1 | 1.8% | Jul 27, 2008 | Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbi... |
| CVE-2008-2991 | MEDIUM | 6.1 | 15.5% | Jul 9, 2008 | Cross-site scripting (XSS) vulnerability in Adobe RoboHelp Server 6 and 7 allows remote attackers to inject arbitrary we... |
| CVE-2008-1447 | MEDIUM | 6.8 | 95.2% | Jul 8, 2008 | The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windo... |
| CVE-2008-2052 | MEDIUM | 6.1 | 1.6% | May 2, 2008 | Open redirect vulnerability in redirect.php in Bitrix Site Manager 6.5 allows remote attackers to redirect users to arbi... |
| CVE-2008-1567 | MEDIUM | 5.5 | 0.3% | Mar 31, 2008 | phpMyAdmin before 2.11.5.1 stores the MySQL (1) username and (2) password, and the (3) Blowfish secret key, in cleartext... |
| CVE-2008-1299 | MEDIUM | 6.1 | 0.7% | Mar 12, 2008 | Cross-site scripting (XSS) vulnerability in SolutionSearch.do in ManageEngine ServiceDesk Plus 7.0.0 Build 7011 for Wind... |
| CVE-2008-0642 | MEDIUM | 6.1 | 1.3% | Feb 15, 2008 | Cross-site scripting (XSS) vulnerability in files created by Adobe RoboHelp 6 and 7, possibly involving use of a (1) Web... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now