CVE Feed

    Dashboard / CVE

    9.3
    Critical

    CVE-2008-4343

    Last Modified: 23 Apr 2026

    The Chilkat XML ChilkatUtil.CkData.1 ActiveX control (ChilkatUtil.dll) 3.0.3.0 and earlier allows remote attackers to create, overwrite, and modify arbitrary files for execution via a call to the (1) SaveToFile, (2) SaveToTempFile, or (3) AppendBinary method. NOTE: this issue might only be exploitable in limited environments or non-default browser settings. NOTE: this can be leveraged for remote code execution by accessing files using hcp:// URLs.

    Published: 30 Sept 2008
    7.5
    High

    CVE-2008-4330

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in LanSuite 3.3.2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the design parameter.

    Published: 30 Sept 2008
    4.3
    Medium

    CVE-2008-4336

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in album.php in Atomic Photo Album (APA) 1.1.0pre4 allows remote attackers to inject arbitrary web script or HTML via the apa_album_ID parameter.

    Published: 30 Sept 2008
    7.5
    High

    CVE-2008-4344

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in cat.php in 6rbScript allows remote attackers to execute arbitrary SQL commands via the CatID parameter.

    Published: 30 Sept 2008
    5.8
    Medium

    CVE-2008-4325

    Last Modified: 23 Apr 2026

    lib/viewvc.py in ViewVC 1.0.5 uses the content-type parameter in the HTTP request for the Content-Type header in the HTTP response, which allows remote attackers to cause content to be misinterpreted by the browser via a content-type parameter that is inconsistent with the requested object. NOTE: this issue might not be a vulnerability, since it requires attacker access to the repository that is being viewed.

    Published: 30 Sept 2008
    4.3
    Medium

    CVE-2008-4327

    Last Modified: 23 Apr 2026

    gdiplus.dll in GDI+ in Microsoft Windows XP SP3 does not properly handle crafted .ico files, which allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a certain crash.ico file on a web site, and allows user-assisted attackers to cause a denial of service (divide-by-zero error and persistent application crash) via this crash.ico file on the desktop, a different vulnerability than CVE-2007-2237.

    Published: 30 Sept 2008
    4.3
    Medium

    CVE-2008-4326

    Last Modified: 23 Apr 2026

    The PMA_escapeJsString function in libraries/js_escape.lib.php in phpMyAdmin before 2.11.9.2, when Internet Explorer is used, allows remote attackers to bypass cross-site scripting (XSS) protection mechanisms and conduct XSS attacks via a NUL byte inside a "</script" sequence.

    Published: 30 Sept 2008
    7.2
    High

    CVE-2008-4405

    Last Modified: 23 Apr 2026

    xend in Xen 3.0.3 does not properly limit the contents of the /local/domain xenstore directory tree, and does not properly restrict a guest VM's write access within this tree, which allows guest OS users to cause a denial of service and possibly have unspecified other impact by writing to (1) console/tty, (2) console/limit, or (3) image/device-model-pid. NOTE: this issue was originally reported as an issue in libvirt 0.3.3 and xenstore, but CVE is considering the core issue to be related to Xen.

    Published: 30 Sept 2008
    2.6
    Low

    CVE-2008-4456

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the command-line client in MySQL 5.0.26 through 5.0.45, and other versions including versions later than 5.0.45, when the --html option is enabled, allows attackers to inject arbitrary web script or HTML by placing it in a database cell, which might be accessed by this client when composing an HTML document. NOTE: as of 20081031, the issue has not been fixed in MySQL 5.0.67.

    Published: 30 Sept 2008
    7.8
    High

    CVE-2008-4618

    Last Modified: 23 Apr 2026

    The Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.27 does not properly handle a protocol violation in which a parameter has an invalid length, which allows attackers to cause a denial of service (panic) via unspecified vectors, related to sctp_sf_violation_paramlen, sctp_sf_abort_violation, sctp_make_abort_violation, and incorrect data types in function calls.

    Published: 30 Sept 2008
    4.3
    Medium

    CVE-2008-4323

    Last Modified: 23 Apr 2026

    Windows Explorer in Microsoft Windows XP SP3 allows user-assisted attackers to cause a denial of service (application crash) via a crafted .ZIP file.

    Published: 29 Sept 2008
    5
    Medium

    CVE-2008-4324

    Last Modified: 23 Apr 2026

    The user interface event dispatcher in Mozilla Firefox 3.0.3 on Windows XP SP2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a series of keypress, click, onkeydown, onkeyup, onmousedown, and onmouseup events. NOTE: it was later reported that Firefox 3.0.2 on Mac OS X 10.5 is also affected.

    Published: 29 Sept 2008
    9.3
    Critical

    CVE-2008-4321

    Last Modified: 23 Apr 2026

    Buffer overflow in FlashGet (formerly JetCar) FTP 1.9 allows remote FTP servers to execute arbitrary code via a long response to the PWD command.

    Published: 29 Sept 2008
    9.3
    Critical

    CVE-2008-3827

    Last Modified: 23 Apr 2026

    Multiple integer underflows in the Real demuxer (demux_real.c) in MPlayer 1.0_rc2 and earlier allow remote attackers to cause a denial of service (process termination) and possibly execute arbitrary code via a crafted video file that causes the stream_read function to read or write arbitrary memory.

    Published: 29 Sept 2008
    10
    Critical

    CVE-2008-4322

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in RealFlex Technologies Ltd. RealWin Server 2.0, as distributed by DATAC, allows remote attackers to execute arbitrary code via a crafted FC_INFOTAG/SET_CONTROL packet.

    Published: 29 Sept 2008
    10
    Critical

    CVE-2008-4318

    Last Modified: 23 Apr 2026

    Observer 0.3.2.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the query parameter to (1) whois.php or (2) netcmd.php.

    Published: 29 Sept 2008
    6.4
    Medium

    CVE-2008-4319

    Last Modified: 23 Apr 2026

    fileadmin.php in Libra File Manager (aka Libra PHP File Manager) 1.18 and earlier allows remote attackers to bypass authentication, and read arbitrary files, modify arbitrary files, and list arbitrary directories, by inserting certain user and isadmin parameters in the query string.

    Published: 29 Sept 2008
    4.3
    Medium

    CVE-2008-4320

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in OpenNMS before 1.5.94 allow remote attackers to inject arbitrary web script or HTML via (1) the j_username parameter to j_acegi_security_check, (2) the username parameter to notification/list.jsp, and (3) the filter parameter to event/list.

    Published: 29 Sept 2008
    10
    Critical

    CVE-2008-2474

    Last Modified: 23 Apr 2026

    Buffer overflow in x87 before 3.5.5 in ABB Process Communication Unit 400 (PCU400) 4.4 through 4.6 allows remote attackers to execute arbitrary code via a crafted packet using the (1) IEC60870-5-101 or (2) IEC60870-5-104 communication protocol to the X87 web interface.

    Published: 29 Sept 2008
    5
    Medium

    CVE-2008-4299

    Last Modified: 23 Apr 2026

    A certain ActiveX control in the Microsoft Internet Authentication Service (IAS) Helper COM Component in iashlpr.dll allows remote attackers to cause a denial of service (browser crash) via a large integer value in the first argument to the PutProperty method. NOTE: this issue was disclosed by an unreliable researcher, so it might be incorrect.

    Published: 29 Sept 2008
    4.3
    Medium

    CVE-2008-4120

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in FlatPress 0.804 allow remote attackers to inject arbitrary web script or HTML via the (1) user or (2) pass parameter to login.php, or the (3) name parameter to contact.php.

    Published: 29 Sept 2008
    10
    Critical

    CVE-2008-4301

    Last Modified: 23 Apr 2026

    A certain ActiveX control in iisext.dll in Microsoft Internet Information Services (IIS) allows remote attackers to set a password via a string argument to the SetPassword method. NOTE: this issue could not be reproduced by a reliable third party. In addition, the original researcher is unreliable. Therefore the original disclosure is probably erroneous

    Published: 29 Sept 2008
    5
    Medium

    CVE-2008-4300

    Last Modified: 23 Apr 2026

    A certain ActiveX control in adsiis.dll in Microsoft Internet Information Services (IIS) allows remote attackers to cause a denial of service (browser crash) via a long string in the second argument to the GetObject method. NOTE: this issue was disclosed by an unreliable researcher, so it might be incorrect.

    Published: 29 Sept 2008
    5
    Medium

    CVE-2008-4195

    Last Modified: 23 Apr 2026

    Opera before 9.52 does not properly restrict the ability of a framed web page to change the address associated with a different frame, which allows remote attackers to trigger the display of an arbitrary address in a frame via unspecified use of web script.

    Published: 27 Sept 2008
    5
    Medium

    CVE-2008-4199

    Last Modified: 23 Apr 2026

    Opera before 9.52 does not prevent use of links from web pages to feed source files on the local disk, which might allow remote attackers to determine the validity of local filenames via vectors involving "detection of JavaScript events and appropriate manipulation."

    Published: 27 Sept 2008
    6.4
    Medium

    CVE-2008-4200

    Last Modified: 23 Apr 2026

    Opera before 9.52 does not ensure that the address field of a news feed represents the feed's actual URL, which allows remote attackers to change this field to display the URL of a page containing web script controlled by the attacker.

    Published: 27 Sept 2008
    10
    Critical

    CVE-2008-4292

    Last Modified: 23 Apr 2026

    Opera before 9.52 does not check the CRL override upon encountering a certificate that lacks a CRL, which has unknown impact and attack vectors. NOTE: it is not clear whether this is a vulnerability, but the vendor included it in a security section of the advisory.

    Published: 27 Sept 2008
    10
    Critical

    CVE-2008-4296

    Last Modified: 23 Apr 2026

    The Cisco Linksys WRT350N with firmware 1.0.3.7 has "admin" as its default password for the "admin" account, which makes it easier for remote attackers to obtain access.

    Published: 27 Sept 2008
    7.2
    High

    CVE-2008-4294

    Last Modified: 23 Apr 2026

    IBM Tivoli Netcool/Webtop 2.1 before 2.1.0.5 preserves cached user privileges after logout, which allows physically proximate attackers to hijack a session by visiting an unattended workstation, as demonstrated by a root session that is still valid after a subsequent read-only session has begun.

    Published: 27 Sept 2008
    5.4
    Medium

    CVE-2008-4295

    Last Modified: 23 Apr 2026

    Microsoft Windows Mobile 6.0 on HTC Wiza 200 and HTC MDA 8125 devices does not properly handle the first attempt to establish a Bluetooth connection to a peer with a long name, which allows remote attackers to cause a denial of service (device reboot) by configuring a Bluetooth device with a long hci name and (1) connecting directly to the Windows Mobile system or (2) waiting for the Windows Mobile system to scan for nearby devices.

    Published: 27 Sept 2008
    8.8
    High

    CVE-2008-4197

    Last Modified: 23 Apr 2026

    Opera before 9.52 on Windows, Linux, FreeBSD, and Solaris, when processing custom shortcut and menu commands, can produce argument strings that contain uninitialized memory, which might allow user-assisted remote attackers to execute arbitrary code or conduct other attacks via vectors related to activation of a shortcut.

    Published: 27 Sept 2008
    2.1
    Low

    CVE-2008-3834

    Last Modified: 23 Apr 2026

    The dbus_signature_validate function in the D-bus library (libdbus) before 1.2.4 allows remote attackers to cause a denial of service (application abort) via a message containing a malformed signature, which triggers a failed assertion error.

    Published: 27 Sept 2008
    5
    Medium

    CVE-2008-4198

    Last Modified: 23 Apr 2026

    Opera before 9.52, when rendering an http page that has loaded an https page into a frame, displays a padlock icon and offers a security information dialog reporting a secure connection, which might allow remote attackers to trick a user into performing unsafe actions on the http page.

    Published: 27 Sept 2008
    10
    Critical

    CVE-2008-4293

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Opera before 9.52 on Windows, when registered as a protocol handler, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors in which Opera is launched by other applications.

    Published: 27 Sept 2008
    4.3
    Medium

    CVE-2008-4119

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in CA Service Desk 11.2 and CMDB 11.0 through 11.2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors involving "multiple web forms."

    Published: 27 Sept 2008
    4.3
    Medium

    CVE-2008-4196

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Opera before 9.52 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 27 Sept 2008
    8.8
    High

    CVE-2008-3637

    Last Modified: 23 Apr 2026

    The Hash-based Message Authentication Code (HMAC) provider in Java on Apple Mac OS X 10.4.11, 10.5.4, and 10.5.5 uses an uninitialized variable, which allows remote attackers to execute arbitrary code via a crafted applet, related to an "error checking issue."

    Published: 26 Sept 2008
    7.8
    High

    CVE-2008-3799

    Last Modified: 23 Apr 2026

    Memory leak in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4, when VoIP is configured, allows remote attackers to cause a denial of service (memory consumption and voice-service outage) via unspecified valid SIP messages.

    Published: 26 Sept 2008
    7.1
    High

    CVE-2008-3802

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4, when VoIP is configured, allows remote attackers to cause a denial of service (device reload) via unspecified valid SIP messages, aka Cisco bug ID CSCsk42759, a different vulnerability than CVE-2008-3800 and CVE-2008-3801.

    Published: 26 Sept 2008
    5.1
    Medium

    CVE-2008-3803

    Last Modified: 23 Apr 2026

    A "logic error" in Cisco IOS 12.0 through 12.4, when a Multiprotocol Label Switching (MPLS) VPN with extended communities is configured, sometimes causes a corrupted route target (RT) to be used, which allows remote attackers to read traffic from other VPNs in opportunistic circumstances.

    Published: 26 Sept 2008
    9.3
    Critical

    CVE-2008-3807

    Last Modified: 23 Apr 2026

    Cisco IOS 12.2 and 12.3 on Cisco uBR10012 series devices, when linecard redundancy is configured, enables a read/write SNMP service with "private" as the community, which allows remote attackers to obtain administrative access by guessing this community and sending SNMP requests.

    Published: 26 Sept 2008
    7.8
    High

    CVE-2008-3808

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service (device reload) via a crafted Protocol Independent Multicast (PIM) packet.

    Published: 26 Sept 2008
    7.1
    High

    CVE-2008-3809

    Last Modified: 23 Apr 2026

    Cisco IOS 12.0 through 12.4 on Gigabit Switch Router (GSR) devices (aka 12000 Series routers) allows remote attackers to cause a denial of service (device crash) via a malformed Protocol Independent Multicast (PIM) packet.

    Published: 26 Sept 2008
    7.8
    High

    CVE-2008-3810

    Last Modified: 23 Apr 2026

    Cisco IOS 12.2 and 12.4, when NAT Skinny Call Control Protocol (SCCP) Fragmentation Support is enabled, allows remote attackers to cause a denial of service (device reload) via segmented SCCP messages, aka CSCsg22426, a different vulnerability than CVE-2008-3811.

    Published: 26 Sept 2008
    7.8
    High

    CVE-2008-3813

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Cisco IOS 12.2 and 12.4, when the L2TP mgmt daemon process is enabled, allows remote attackers to cause a denial of service (device reload) via a crafted L2TP packet.

    Published: 26 Sept 2008
    7.8
    High

    CVE-2008-2739

    Last Modified: 23 Apr 2026

    The SERVICE.DNS signature engine in the Intrusion Prevention System (IPS) in Cisco IOS 12.3 and 12.4 allows remote attackers to cause a denial of service (device crash or hang) via network traffic that triggers unspecified IPS signatures, a different vulnerability than CVE-2008-1447.

    Published: 26 Sept 2008
    7.8
    High

    CVE-2008-3798

    Last Modified: 23 Apr 2026

    Cisco IOS 12.4 allows remote attackers to cause a denial of service (device crash) via a normal, properly formed SSL packet that occurs during termination of an SSL session.

    Published: 26 Sept 2008
    8.5
    High

    CVE-2008-3805

    Last Modified: 23 Apr 2026

    Cisco IOS 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices handles external UDP packets that are sent to 127.0.0.0/8 addresses intended for IPC communication within the device, which allows remote attackers to cause a denial of service (device or linecard reload) via crafted UDP packets, a different vulnerability than CVE-2008-3806.

    Published: 26 Sept 2008
    7.1
    High

    CVE-2008-3812

    Last Modified: 23 Apr 2026

    Cisco IOS 12.4, when IOS firewall Application Inspection Control (AIC) with HTTP Deep Packet Inspection is enabled, allows remote attackers to cause a denial of service (device reload) via a malformed HTTP transit packet.

    Published: 26 Sept 2008
    7.1
    High

    CVE-2008-3800

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4 and Unified Communications Manager 4.1 through 6.1, when VoIP is configured, allows remote attackers to cause a denial of service (device or process reload) via unspecified valid SIP messages, aka Cisco Bug ID CSCsu38644, a different vulnerability than CVE-2008-3801 and CVE-2008-3802.

    Published: 26 Sept 2008