Skip to main content

Year archive

CVEs published in 2008

Archive summary

5,632 CVEs published in 2008 — 1,005 Critical, 1,859 High, 2,583 Medium, 185 Low, 0 Unrated.

CVE-2008-5354

Published Dec 5, 2008

Stack-based buffer overflow in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earl…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-5353

Published Dec 5, 2008

The Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier does not properly enfor…

CVSS 10.0 · Critical
evidence mentions
4
Buzz score
25.6
Vendor/product tagsBeta · best-effort

CVE-2008-5352

Published Dec 5, 2008

Integer overflow in the JAR unpacking utility (unpack200) in the unpack library (unpack.dll) in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier, and JDK…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-5351

Published Dec 5, 2008

Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier accepts UTF-8 encodings tha…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5350

Published Dec 5, 2008

Unspecified vulnerability in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlie…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5349

Published Dec 5, 2008

Unspecified vulnerability in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier, and JDK and JRE 5.0 Update 16 and earlier, allows remote attackers to caus…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5348

Published Dec 5, 2008

Unspecified vulnerability in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlie…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5347

Published Dec 5, 2008

Multiple unspecified vulnerabilities in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier allow untrusted applets and applications to gain privileges via…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5346

Published Dec 5, 2008

Unspecified vulnerability in Java Runtime Environment (JRE) for Sun JDK and JRE 5.0 Update 16 and earlier; SDK and JRE 1.4.2_18 and earlier; and SDK and JRE 1.3.1_23 or earlier al…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5345

Published Dec 5, 2008

Unspecified vulnerability in Java Runtime Environment (JRE) with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; SDK and JRE 1.4.2_18 and earlier;…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5344

Published Dec 5, 2008

Unspecified vulnerability in Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 an…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5343

Published Dec 5, 2008

Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows remote attac…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-5342

Published Dec 5, 2008

Unspecified vulnerability in the BasicService for Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SD…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5341

Published Dec 5, 2008

Unspecified vulnerability in Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier, and JDK and JRE 5.0 Update 16 and earlier, allows untrusted JWS ap…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5340

Published Dec 5, 2008

Unspecified vulnerability in Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 an…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-5339

Published Dec 5, 2008

Unspecified vulnerability in Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 an…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2086

Published Dec 5, 2008

Sun Java Web Start and Java Plug-in for JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allow remote attackers to…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-5335

Published Dec 5, 2008

SQL injection vulnerability in messages.php in PHP-Fusion 6.01.15 and 7.00.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5334

Published Dec 5, 2008

PHP remote file inclusion vulnerability in includes/common.php in NitroTech 0.0.3a allows remote attackers to execute arbitrary PHP code via a URL in the root parameter.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-5333

Published Dec 5, 2008

SQL injection vulnerability in members.php in NitroTech 0.0.3a allows remote attackers to execute arbitrary SQL commands via the id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5332

Published Dec 5, 2008

Multiple PHP remote file inclusion vulnerabilities in Pie 0.5.3 allow remote attackers to execute arbitrary PHP code via a URL in the (1) lib parameter to files in lib/action/ inc…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-6719

Published Dec 5, 2008

SQL injection vulnerability in Wiz-Ad 1.3 allows remote attackers to execute arbitrary SQL commands via unknown vectors. NOTE: the provenance of this information is unknown; the…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 451-475 of 5,632 CVEsPage 19 of 226