Skip to main content

Year archive

CVEs published in 2008

Archive summary

5,632 CVEs published in 2008 — 1,005 Critical, 1,859 High, 2,583 Medium, 185 Low, 0 Unrated.

CVE-2008-4844

Published Dec 11, 2008

Use-after-free vulnerability in the CRecordInstance::TransferToDestination function in mshtml.dll in Microsoft Internet Explorer 5.01, 6, 6 SP1, and 7 allows remote attackers to e…

CVSS 9.3 · Critical
evidence mentions
5
Buzz score
22.9
Vendor/product tagsBeta · best-effort

CVE-2008-4418

Published Dec 11, 2008

Unspecified vulnerability in DCE in HP HP-UX B.11.11, B.11.23, and B.11.31 allows remote attackers to cause a denial of service via unknown vectors.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2006-7235

Published Dec 11, 2008

Teamtek Universal FTP Server 1.0.50 allows remote attackers to cause a denial of service (daemon crash or hang) via (1) multiple STOR (aka PUT) commands, or an MKD command followe…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5420

Published Dec 10, 2008

The SAN Manager Master Agent service (aka msragent.exe) in EMC Control Center before 6.1 does not properly authenticate SST_SENDFILE requests, which allows remote attackers to rea…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5419

Published Dec 10, 2008

Stack-based buffer overflow in SAN Manager Master Agent service (aka msragent.exe) in EMC Control Center 5.2 SP5 and 6.0 allows remote attackers to execute arbitrary code via mult…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-5418

Published Dec 10, 2008

Directory traversal vulnerability in login.php in the PunPortal module before 2.0 for PunBB allows remote attackers to include and execute arbitrary local files via a .. (dot dot)…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5417

Published Dec 10, 2008

HP DECnet-Plus 8.3 before ECO03 for OpenVMS on the Alpha platform uses world-writable permissions for the OSIT$NAMES logical name table, which allows local users to bypass intende…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2008-5416

Published Dec 10, 2008

Heap-based buffer overflow in Microsoft SQL Server 2000 SP4, 8.00.2050, 8.00.2039, and earlier; SQL Server 2000 Desktop Engine (MSDE 2000) SP4; SQL Server 2005 SP2 and 9.00.1399.0…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-4837

Published Dec 10, 2008

Stack-based buffer overflow in Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Word Viewer 2003 Gold and SP3; Office Compatibility Pack for Word, Excel,…

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9
Showing 351-375 of 5,632 CVEsPage 15 of 226