01642 06 11 11 Arrange Call

CVE Database

Year: 2008

CVE Database Year: 2008

CVE-2008-0001: Vulnerability: Local Users Bypassing Permissions in Linux Kernel VFS
CVE-2008-0002: Apache Tomcat Remote Information Disclosure Vulnerability
CVE-2008-0003: Stack-based Buffer Overflow in PAMCallback Function in OpenPegasus CIM Management Server
CVE-2008-0005: Cross-Site Scripting (XSS) Vulnerability in mod_proxy_ftp in Apache 2.2.x, 2.0.x, and 1.3.x
CVE-2008-0006: Buffer Overflow in X.Org Xserver and libfont/libXfont Libraries
CVE-2008-0007: Kernel Memory Access Vulnerability in Linux Kernel
CVE-2008-0008: Privilege Escalation Vulnerability in PulseAudio 0.9.8 and 0.9.9
CVE-2008-0009: Kernel Memory Leak Vulnerability in vmsplice_to_user Function
CVE-2008-0010: Kernel Memory Read Vulnerability in Linux 2.6.22-2.6.24
CVE-2008-0011: MJPEG Decoder Vulnerability
CVE-2008-0012: Heap-based Buffer Overflow in Trend Micro ServerProtect 5.7 and 5.58
CVE-2008-0013: Heap-based Buffer Overflow in Trend Micro ServerProtect 5.7 and 5.58
CVE-2008-0014: Heap-based Buffer Overflow in Trend Micro ServerProtect 5.7 and 5.58
CVE-2008-0015: ATL Stack-based Buffer Overflow Vulnerability
CVE-2008-0016: Stack-based Buffer Overflow in URL Parsing Implementation in Mozilla Firefox and SeaMonkey
CVE-2008-0017: Memory Corruption and Buffer Overflow in Firefox and SeaMonkey HTTP Index Parser
CVE-2008-0020: ATL Header Memcopy Vulnerability
CVE-2008-0026: SQL Injection Vulnerability in Cisco Unified CallManager/Communications Manager (CUCM) Versions 5.0/5.1 and 6.0/6.1
CVE-2008-0027: Heap-based Buffer Overflow in Cisco Unified Communications Manager (CUCM) CTLProvider.exe Service
CVE-2008-0028: Denial of Service Vulnerability in Cisco PIX and ASA Appliances
CVE-2008-0029: Default Password Vulnerability in Cisco Application Velocity System (AVS)
CVE-2008-0031: Memory Corruption Vulnerability in Apple QuickTime 7.4 and Earlier
CVE-2008-0032: Heap Corruption Vulnerability in Apple QuickTime
CVE-2008-0033: Memory Corruption Vulnerability in Apple QuickTime
CVE-2008-0034: Passcode Bypass Vulnerability in Apple iPhone 1.0 through 1.1.2 via Emergency Calls
CVE-2008-0035: Memory Corruption Vulnerability in Safari
CVE-2008-0036: Buffer Overflow in Apple QuickTime Allows Remote Code Execution via Crafted Compressed PICT Image
CVE-2008-0037: X11 Vulnerability: Bypassing Access Restrictions in Apple Mac OS X 10.5 through 10.5.1
CVE-2008-0038: Time Machine Backup Vulnerability in Launch Services
CVE-2008-0039: Arbitrary Command Execution Vulnerability in Mail on Apple Mac OS X 10.4.11
CVE-2008-0040: Unspecified vulnerability in NFS in Apple Mac OS X 10.5 through 10.5.1
CVE-2008-0041: Information Leakage in Apple Mac OS X 10.5 through 10.5.1 Parental Controls
CVE-2008-0042: Terminal.app Argument Injection Vulnerability
CVE-2008-0043: Photocast Subscription Format String Vulnerability in Apple iPhoto
CVE-2008-0044: Buffer Overflow Vulnerabilities in AFP Client in Apple Mac OS X 10.4.11 and 10.5.2
CVE-2008-0045: Cross-Realm Authentication Bypass Vulnerability in AFP Server in Apple Mac OS X 10.4.11
CVE-2008-0046: Incorrect German Translation in Application Firewall Radio Button in Apple Mac OS X 10.5.2
CVE-2008-0047: Heap-based Buffer Overflow in CUPS 1.3.5 and Apple Mac OS X 10.5.2 Printer Sharing Vulnerability
CVE-2008-0048: Stack-based Buffer Overflow in AppKit Allows Arbitrary Code Execution in Mac OS X 10.4.11
CVE-2008-0049: Insecure Inter-Process Communication in AppKit on Apple Mac OS X 10.4.11
CVE-2008-0050: CFNetwork HTTPS Proxy Spoofing Vulnerability
CVE-2008-0051: Integer Overflow in CoreFoundation Allows Arbitrary Code Execution via Crafted Time Zone Data
CVE-2008-0052: Remote Code Execution via Unsafe File Type Handling in Apple Mac OS X 10.4.11
CVE-2008-0053: Buffer Overflow Vulnerabilities in CUPS HP-GL/2-to-PostScript Filter
CVE-2008-0054: Arbitrary Code Execution Vulnerability in Apple Mac OS X 10.4.11 via NSSelectorFromString API
CVE-2008-0055: World-writable Directories Vulnerability in Apple Mac OS X 10.4.11
CVE-2008-0056: Stack-based Buffer Overflow in NSFileManager in Apple Mac OS X 10.4.11
CVE-2008-0057: Arbitrary Code Execution via Crafted Serialized Property List in AppKit
CVE-2008-0058: Race condition in NSURLConnection cache management functionality in Foundation for Apple Mac OS X 10.4.11 allows remote code execution
CVE-2008-0059: Race Condition Vulnerability in NSXML in Apple Mac OS X 10.4.11: Arbitrary Code Execution via Crafted XML File
CVE-2008-0060: Arbitrary Applescript Execution via Help Viewer in Apple Mac OS X 10.4.11 and 10.5.2
CVE-2008-0061: Improper Rotation of Resource Records Denial of Service Vulnerability in MaraDNS
CVE-2008-0062: Denial of Service and Remote Code Execution Vulnerability in MIT Kerberos 5 (krb5kdc)
CVE-2008-0063: Uninitialized Stack Values Vulnerability in MIT Kerberos 5 KDC
CVE-2008-0064: Stack-based Buffer Overflow in XnView, NConvert, and GFL SDK Allows Arbitrary Code Execution via Crafted Radiance RGBE (.hdr) File
CVE-2008-0065: Stack-based buffer overflows in in_mp3.dll in Winamp 5.21, 5.5, and 5.51
CVE-2008-0066: Buffer Overflow Vulnerabilities in Autonomy KeyView HTML Speed Reader
CVE-2008-0067: Multiple Stack-Based Buffer Overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53
CVE-2008-0068: Arbitrary File Read Vulnerability in HP OpenView Network Node Manager (OV NNM)
CVE-2008-0069: XnView 1.92 and 1.92.1 FontName Parameter Stack-based Buffer Overflow Vulnerability
CVE-2008-0070: Heap-based Buffer Overflow in Orb Networks Orb 2.00.1014 and Winamp Remote BETA
CVE-2008-0071: Denial of Service Vulnerability in BitTorrent and uTorrent Web UI Interface
CVE-2008-0072: Format String Vulnerability in Evolution 2.12.3 and Earlier Allows Remote Code Execution
CVE-2008-0073: Remote Code Execution Vulnerability in xine-lib 1.1.10.1 via SDP Streamid Parameter
CVE-2008-0074: Privilege Escalation Vulnerability in Microsoft Internet Information Services (IIS)
CVE-2008-0075: Arbitrary Code Execution Vulnerability in Microsoft Internet Information Services (IIS) 5.1 through 6.0 via Crafted ASP Inputs
CVE-2008-0076: HTML Rendering Memory Corruption Vulnerability in Microsoft Internet Explorer 5.01, 6 SP1 and SP2, and 7
CVE-2008-0077: Remote Code Execution via Property Memory Corruption in Microsoft Internet Explorer
CVE-2008-0078: ActiveX Control Memory Corruption Vulnerability in Microsoft Internet Explorer
CVE-2008-0080: Heap-based Buffer Overflow in WebDAV Mini-Redirector in Microsoft Windows XP, Server 2003, and Vista
CVE-2008-0081: Macro Execution Vulnerability in Microsoft Excel 2000-2003, Viewer 2003, and Office 2004 for Mac
CVE-2008-0082: Remote Code Execution Vulnerability in Windows Messenger
CVE-2008-0083: Arbitrary Code Execution Vulnerability in VBScript and JScript Scripting Engines
CVE-2008-0084: Denial of Service Vulnerability in Windows Vista TCP/IP Support
CVE-2008-0085: Memory Page Reuse Vulnerability in SQL Server
CVE-2008-0086: Buffer Overflow Vulnerability in Microsoft SQL Server 2000 SP4, MSDE 2000 SP4, and WMSDE 2000
CVE-2008-0087: Predictable DNS Transaction IDs in Microsoft Windows Operating Systems
CVE-2008-0088: Denial of Service Vulnerability in Active Directory and ADAM
CVE-2008-0089: SQL Injection Vulnerability in uprofile.php in ClipShare
CVE-2008-0090: Denial of Service Vulnerability in DivX Player 6.6.0
CVE-2008-0091: Directory Traversal Vulnerability in AGENCY4NET WEBFTP 1: Arbitrary File Read and Delete
CVE-2008-0092: Arbitrary Script Injection in Appalachian State University phpWebSite 1.4.0 Search Module
CVE-2008-0093: Cross-Site Scripting (XSS) Vulnerabilities in eTicket 1.5.5.2 and 1.5.6 RC2/RC3 via newticket.php
CVE-2008-0094: Directory Traversal Vulnerabilities in MODx Content Management System 0.9.6.1
CVE-2008-0095: Denial of Service Vulnerability in Asterisk SIP Channel Driver
CVE-2008-0096: Buffer Overflow Vulnerabilities in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and Earlier
CVE-2008-0097: Format String Vulnerability in Georgia SoftWorks SSH2 Server (GSW_SSHD) Allows Remote Code Execution
CVE-2008-0098: Buffer Overflow Vulnerability in RealPlayer 11 Build 6.0.14.748
CVE-2008-0099: Multiple SQL Injection Vulnerabilities in MyPHP Forum 3.0 and Earlier
CVE-2008-0100: Stack-based Buffer Overflow in White_Dune 0.29 beta791 and Earlier: Remote Code Execution via .WRL File
CVE-2008-0101: Format String Vulnerability in swDebugf Function in White_Dune 0.29 beta791 and Earlier
CVE-2008-0102: Publisher Invalid Memory Reference Vulnerability
CVE-2008-0103: Microsoft Office Execution Jump Vulnerability
CVE-2008-0104: Publisher Memory Corruption Vulnerability
CVE-2008-0105: Microsoft Works File Converter Index Table Vulnerability
CVE-2008-0106: Remote Code Execution Vulnerability in Microsoft SQL Server 2005 SP1 and SP2
CVE-2008-0107: SQL Server Memory Corruption Vulnerability
CVE-2008-0108: Microsoft Works File Converter Stack-based Buffer Overflow Vulnerability
CVE-2008-0109: Arbitrary Code Execution Vulnerability in Microsoft Office Word
CVE-2008-0110: Arbitrary Code Execution Vulnerability in Microsoft Outlook via Crafted mailto URI
CVE-2008-0111: Excel Data Validation Record Vulnerability
CVE-2008-0112: Excel File Import Vulnerability
CVE-2008-0113: Microsoft Office Cell Parsing Memory Corruption Vulnerability
CVE-2008-0114: Memory Corruption Vulnerability in Microsoft Excel 2000-2003, Viewer 2003, and Office for Mac 2004
CVE-2008-0115: Excel Formula Parsing Vulnerability
CVE-2008-0116: Excel Rich Text Validation Vulnerability
CVE-2008-0117: Excel Conditional Formatting Code Execution Vulnerability
CVE-2008-0118: Microsoft Office Memory Corruption Vulnerability
CVE-2008-0119: Publisher Object Handler Validation Vulnerability
CVE-2008-0120: Memory Allocation Vulnerability in Microsoft PowerPoint Viewer 2003
CVE-2008-0121: Memory Calculation Vulnerability in Microsoft PowerPoint Viewer 2003
CVE-2008-0122: Off-by-one Memory Corruption Vulnerability in ISC BIND 9.4.2 and Earlier
CVE-2008-0123: Cross-site scripting (XSS) vulnerability in Moodle 1.8.3 install.php
CVE-2008-0124: Cross-site scripting (XSS) vulnerability in Serendipity (S9Y) before 1.3-beta1
CVE-2008-0125: Arbitrary Web Script Injection Vulnerability in phpstats.php
CVE-2008-0127: Remote Code Execution and Denial of Service Vulnerability in McAfee E-Business Server
CVE-2008-0128: Insecure Cookie Handling in Apache Tomcat SingleSignOn Valve
CVE-2008-0129: SQL Injection Vulnerability in Site@School 2.3.10 and Earlier: Remote Code Execution via album_name Parameter
CVE-2008-0130: SQL Injection Vulnerability in Instant Softwares Dating Site Login Form
CVE-2008-0131: Cross-Site Scripting (XSS) Vulnerability in Instant Softwares Dating Site Login Form
CVE-2008-0132: Denial of Service Vulnerability in Pragma FortressSSH 5.0 Build 4 Revision 293 and Earlier
CVE-2008-0133: Multiple SQL Injection Vulnerabilities in Tribisur 2.1 and Earlier
CVE-2008-0134: Arbitrary Web Script Injection Vulnerability in Snitz Forums 2000
CVE-2008-0135: Sensitive Information Exposure in Snitz Forums 2000 3.4.06 and Earlier