CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2008-3675

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in classes/imgsize.php in Gelato 0.95 allows remote attackers to read arbitrary files via (1) a .. (dot dot) and possibly (2) a full pathname in the img parameter. NOTE: some of these details are obtained from third party information.

    Published: 14 Aug 2008
    4.3
    Medium

    CVE-2008-3679

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in IDevSpot PhpLinkExchange 1.01 allow remote attackers to inject arbitrary web script or HTML via the catid parameter in a (1) user_add, (2) recip, (3) tellafriend, or (4) contact action, or (5) in a request without an action; or (6) the id parameter in a tellafriend action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 14 Aug 2008
    5
    Medium

    CVE-2008-3680

    Last Modified: 23 Apr 2026

    The decryption function in Flagship Industries Ventrilo 3.0.2 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and server crash) by sending a type 0 packet with an invalid version followed by another packet to TCP port 3784.

    Published: 14 Aug 2008
    7.5
    High

    CVE-2008-3681

    Last Modified: 23 Apr 2026

    components/com_user/models/reset.php in Joomla! 1.5 through 1.5.5 does not properly validate reset tokens, which allows remote attackers to reset the "first enabled user (lowest id)" password, typically for the administrator.

    Published: 14 Aug 2008
    2.6
    Low

    CVE-2008-3270

    Last Modified: 23 Apr 2026

    yum-rhn-plugin in Red Hat Enterprise Linux (RHEL) 5 does not verify the SSL certificate for a file download from a Red Hat Network (RHN) server, which makes it easier for remote man-in-the-middle attackers to cause a denial of service (loss of updates) or force the download and installation of official Red Hat packages that were not requested.

    Published: 14 Aug 2008
    6.2
    Medium

    CVE-2008-2936

    Last Modified: 23 Apr 2026

    Postfix before 2.3.15, 2.4 before 2.4.8, 2.5 before 2.5.4, and 2.6 before 2.6-20080814, when the operating system supports hard links to symlinks, allows local users to append e-mail messages to a file to which a root-owned symlink points, by creating a hard link to this symlink and then sending a message. NOTE: this can be leveraged to gain privileges if there is a symlink to an init script.

    Published: 14 Aug 2008
    6
    Medium

    CVE-2008-4313

    Last Modified: 23 Apr 2026

    A certain Red Hat patch for tog-pegasus in OpenGroup Pegasus 2.7.0 does not properly configure the PAM tty name, which allows remote authenticated users to bypass intended access restrictions and send requests to OpenPegasus WBEM services.

    Published: 14 Aug 2008
    6.8
    Medium

    CVE-2008-4315

    Last Modified: 23 Apr 2026

    tog-pegasus in OpenGroup Pegasus 2.7.0 on Red Hat Enterprise Linux (RHEL) 5, Fedora 9, and Fedora 10 does not log failed authentication attempts to the OpenPegasus CIM server, which makes it easier for remote attackers to avoid detection of password guessing attacks.

    Published: 14 Aug 2008
    1.9
    Low

    CVE-2008-2937

    Last Modified: 23 Apr 2026

    Postfix 2.5 before 2.5.4 and 2.6 before 2.6-20080814 delivers to a mailbox file even when this file is not owned by the recipient, which allows local users to read e-mail messages by creating a mailbox file corresponding to another user's account name.

    Published: 14 Aug 2008
    5
    Medium

    CVE-2008-3443

    Last Modified: 23 Apr 2026

    The regular expression engine (regex.c) in Ruby 1.8.5 and earlier, 1.8.6 through 1.8.6-p286, 1.8.7 through 1.8.7-p71, and 1.9 through r18423 allows remote attackers to cause a denial of service (infinite loop and crash) via multiple long requests to a Ruby socket, related to memory allocation failure, and as demonstrated against Webrick.

    Published: 14 Aug 2008
    10
    Critical

    CVE-2008-3338

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in TIBCO Hawk (1) AMI C library (libtibhawkami) and (2) Hawk HMA (tibhawkhma), as used in TIBCO Hawk before 4.8.1; Runtime Agent (TRA) before 5.6.0; iProcess Engine 10.3.0 through 10.6.2 and 11.0.0; and Mainframe Service Tracker before 1.1.0 might allow remote attackers to execute arbitrary code via a crafted message.

    Published: 13 Aug 2008
    7.5
    High

    CVE-2008-3669

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in comments.php in ZeeScripts Reviews Opinions Rating Posting Engine Web-Site PHP Script (aka ZeeReviews) allows remote attackers to execute arbitrary SQL commands via the ItemID parameter.

    Published: 13 Aug 2008
    6.8
    Medium

    CVE-2008-3670

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in authordetail.php in Article Friendly Pro allows remote attackers to execute arbitrary SQL commands via the autid parameter.

    Published: 13 Aug 2008
    7.5
    High

    CVE-2008-3672

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in showcategory.php in PozScripts Classified Ads allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2008-3673. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 13 Aug 2008
    7.5
    High

    CVE-2008-3674

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in ugroups.php in PozScripts TubeGuru Video Sharing Script allows remote attackers to execute arbitrary SQL commands via the UID parameter.

    Published: 13 Aug 2008
    5
    Medium

    CVE-2008-3671

    Last Modified: 23 Apr 2026

    Acronis True Image Echo Server 9.x build 8072 on Linux does not properly encrypt backups to an FTP server, which allows remote attackers to obtain sensitive information. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 13 Aug 2008
    7.5
    High

    CVE-2008-3673

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in browsecats.php in PozScripts Classified Ads allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2008-3672.

    Published: 13 Aug 2008
    10
    Critical

    CVE-2008-1668

    Last Modified: 23 Apr 2026

    ftpd.c in (1) wu-ftpd 2.4.2 and (2) ftpd in HP HP-UX B.11.11 assigns uid 0 to the FTP client in certain operating-system misconfigurations in which PAM authentication can succeed even though no passwd entry is available for a user, which allows remote attackers to gain privileges, as demonstrated by a login attempt for an LDAP account when nsswitch.conf does not specify LDAP for passwd information.

    Published: 13 Aug 2008
    6.8
    Medium

    CVE-2008-3667

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Maxthon Browser 2.0 and earlier allows remote attackers to execute arbitrary code via a long Content-type HTTP header.

    Published: 13 Aug 2008
    4.3
    Medium

    CVE-2008-3668

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in the Yogurt Social Network module 3.2 rc1 for XOOPS allow remote attackers to inject arbitrary web script or HTML via the uid parameter to (1) friends.php, (2) seutubo.php, (3) album.php, (4) scrapbook.php, (5) index.php, or (6) tribes.php; or (7) the description field of a new scrap.

    Published: 13 Aug 2008
    7.1
    High

    CVE-2008-3666

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Sun Solaris 10 and OpenSolaris before snv_96 allows (1) context-dependent attackers to cause a denial of service (panic) via vectors involving creation of a crafted file and use of the sendfilev system call, as demonstrated by a file served by an Apache 2.2.x web server with EnableSendFile configured; and (2) local users to cause a denial of service (panic) via a call to the sendfile system call, as reachable through the sendfilev library.

    Published: 13 Aug 2008
    9
    Critical

    CVE-2008-1456

    Last Modified: 23 Apr 2026

    Array index vulnerability in the Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote authenticated users to execute arbitrary code via a crafted event subscription request that is used to access an array of function pointers.

    Published: 13 Aug 2008
    9
    Critical

    CVE-2008-1457

    Last Modified: 23 Apr 2026

    The Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly validate per-user subscriptions, which allows remote authenticated users to execute arbitrary code via a crafted event subscription request.

    Published: 13 Aug 2008
    9.3
    Critical

    CVE-2008-2255

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 5.01, 6, and 7 accesses uninitialized memory, which allows remote attackers to cause a denial of service (crash) and execute arbitrary code via unknown vectors, a different vulnerability than CVE-2008-2254, aka "HTML Object Memory Corruption Vulnerability."

    Published: 13 Aug 2008
    9.3
    Critical

    CVE-2008-2254

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 6 and 7 accesses uninitialized memory, which allows remote attackers to cause a denial of service (crash) and execute arbitrary code via unknown vectors, aka "HTML Object Memory Corruption Vulnerability."

    Published: 13 Aug 2008
    9.3
    Critical

    CVE-2008-2257

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 5.01, 6, and 7 accesses uninitialized memory in certain conditions, which allows remote attackers to cause a denial of service (crash) and execute arbitrary code via vectors related to a document object "appended in a specific order," aka "HTML Objects Memory Corruption Vulnerability" or "XHTML Rendering Memory Corruption Vulnerability," a different vulnerability than CVE-2008-2258.

    Published: 13 Aug 2008
    9.3
    Critical

    CVE-2008-2258

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 5.01, 6, and 7 accesses uninitialized memory in certain conditions, which allows remote attackers to cause a denial of service (crash) and execute arbitrary code via vectors related to a document object "appended in a specific order" with "particular functions ... performed on" document objects, aka "HTML Objects Memory Corruption Vulnerability" or "Table Layout Memory Corruption Vulnerability," a different vulnerability than CVE-2008-2257.

    Published: 13 Aug 2008
    9.3
    Critical

    CVE-2008-2259

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 6 and 7 does not perform proper "argument validation" during print preview, which allows remote attackers to execute arbitrary code via unknown vectors, aka "HTML Component Handling Vulnerability."

    Published: 13 Aug 2008
    9.3
    Critical

    CVE-2008-2256

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 5.01, 6, and 7 does not properly handle objects that have been incorrectly initialized or deleted, which allows remote attackers to cause a denial of service (crash) and execute arbitrary code via unknown vectors, aka "Uninitialized Memory Corruption Vulnerability."

    Published: 13 Aug 2008
    5
    Medium

    CVE-2008-3514

    Last Modified: 23 Apr 2026

    VMware VirtualCenter 2.5 before Update 2 and 2.0.2 before Update 5 relies on client-side "enabled/disabled functionality" for access control, which allows remote attackers to determine valid user names by enabling functionality in the GUI and then making an "attempt to assign permissions to other system users."

    Published: 13 Aug 2008
    9
    Critical

    CVE-2008-3650

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in Horde Groupware Webmail before Edition 1.1.1 (final) have unknown impact and attack vectors related to "unescaped output," possibly cross-site scripting (XSS), in the (1) object browser and (2) contact view.

    Published: 13 Aug 2008
    5
    Medium

    CVE-2008-3654

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in TikiWiki CMS/Groupware before 2.0 allows attackers to obtain "path and PHP configuration" via unknown vectors.

    Published: 13 Aug 2008
    10
    Critical

    CVE-2008-3653

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in TikiWiki CMS/Groupware before 2.0 have unknown impact and attack vectors.

    Published: 13 Aug 2008
    6.9
    Medium

    CVE-2008-5374

    Last Modified: 23 Apr 2026

    bash-doc 3.2 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/cb#####.? temporary file, related to the (1) aliasconv.sh, (2) aliasconv.bash, and (3) cshtobash scripts.

    Published: 13 Aug 2008
    4.3
    Medium

    CVE-2008-3516

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in files generated by Adobe Presenter 6 and 7 before 7.0.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors involving (1) viewer.swf and (2) loadflash.js, a different vulnerability than CVE-2008-3515.

    Published: 13 Aug 2008
    9.3
    Critical

    CVE-2008-0121

    Last Modified: 23 Apr 2026

    A "memory calculation error" in Microsoft PowerPoint Viewer 2003 allows remote attackers to execute arbitrary code via a PowerPoint file with an invalid picture index that triggers memory corruption, aka "Memory Calculation Vulnerability."

    Published: 13 Aug 2008
    7.1
    High

    CVE-2008-1448

    Last Modified: 23 Apr 2026

    The MHTML protocol handler in a component of Microsoft Outlook Express 5.5 SP2 and 6 through SP1, and Windows Mail, does not assign the correct Internet Explorer Security Zone to UNC share pathnames, which allows remote attackers to bypass intended access restrictions and read arbitrary files via an mhtml: URI in conjunction with a redirection, aka "URL Parsing Cross-Domain Information Disclosure Vulnerability."

    Published: 13 Aug 2008
    9.1
    Critical

    CVE-2008-2369

    Last Modified: 23 Apr 2026

    manzier.pxt in Red Hat Network Satellite Server before 5.1.1 has a hard-coded authentication key, which allows remote attackers to connect to the server and obtain sensitive information about user accounts and entitlements.

    Published: 13 Aug 2008
    6.8
    Medium

    CVE-2008-3649

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in categorydetail.php in Article Friendly Standard allows remote attackers to execute arbitrary SQL commands via the Cat parameter.

    Published: 13 Aug 2008
    9.3
    Critical

    CVE-2008-0120

    Last Modified: 23 Apr 2026

    Integer overflow in Microsoft PowerPoint Viewer 2003 allows remote attackers to execute arbitrary code via a PowerPoint file with a malformed picture index that triggers memory corruption, related to handling of CString objects, aka "Memory Allocation Vulnerability."

    Published: 13 Aug 2008
    10
    Critical

    CVE-2008-0082

    Last Modified: 23 Apr 2026

    An ActiveX control (Messenger.UIAutomation.1) in Windows Messenger 4.7 and 5.1 is marked as safe-for-scripting, which allows remote attackers to control the Messenger application, and "change state," obtain contact information, and establish audio or video connections without notification via unknown vectors.

    Published: 13 Aug 2008
    6.8
    Medium

    CVE-2008-1455

    Last Modified: 23 Apr 2026

    A "memory calculation error" in Microsoft Office PowerPoint 2000 SP3, 2002 SP3, 2003 SP2, and 2007 through SP1; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 through SP1; and Office 2004 for Mac allows remote attackers to execute arbitrary code via a PowerPoint file with crafted list values that trigger memory corruption, aka "Parsing Overflow Vulnerability."

    Published: 13 Aug 2008
    7.1
    High

    CVE-2008-3276

    Last Modified: 23 Apr 2026

    Integer overflow in the dccp_setsockopt_change function in net/dccp/proto.c in the Datagram Congestion Control Protocol (DCCP) subsystem in the Linux kernel 2.6.17-rc1 through 2.6.26.2 allows remote attackers to cause a denial of service (panic) via a crafted integer value, related to Change L and Change R options without at least one byte in the dccpsf_val field.

    Published: 13 Aug 2008
    4.3
    Medium

    CVE-2008-3515

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in files generated by Adobe Presenter 6 and 7 before 7.0.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors involving (1) viewer.swf and (2) loadflash.js, a different vulnerability than CVE-2008-3516.

    Published: 13 Aug 2008
    5
    Medium

    CVE-2008-4297

    Last Modified: 23 Apr 2026

    Mercurial before 1.0.2 does not enforce the allowpull permission setting for a pull operation from hgweb, which allows remote attackers to read arbitrary files from a repository via an "hg pull" request.

    Published: 13 Aug 2008
    6.9
    Medium

    CVE-2008-5148

    Last Modified: 23 Apr 2026

    sch2eaglepos.sh in geda-gnetlist 1.4.0 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/##### temporary file.

    Published: 13 Aug 2008
    6.9
    Medium

    CVE-2008-5153

    Last Modified: 23 Apr 2026

    spell-check-logic.cgi in Moodle 1.8.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/spell-check-debug.log, (2) /tmp/spell-check-before, or (3) /tmp/spell-check-after temporary file.

    Published: 13 Aug 2008
    9.3
    Critical

    CVE-2008-2245

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the InternalOpenColorProfile function in mscms.dll in Microsoft Windows Image Color Management System (MSCMS) in the Image Color Management (ICM) component on Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted image file.

    Published: 13 Aug 2008
    7.8
    High

    CVE-2008-2246

    Last Modified: 23 Apr 2026

    Microsoft Windows Vista through SP1 and Server 2008 do not properly import the default IPsec policy from a Windows Server 2003 domain to a Windows Server 2008 domain, which prevents IPsec rules from being enforced and allows remote attackers to bypass intended access restrictions.

    Published: 13 Aug 2008
    9.3
    Critical

    CVE-2008-3004

    Last Modified: 23 Apr 2026

    Microsoft Office Excel 2000 SP3, 2002 SP3, and 2003 SP2 and SP3; Office Excel Viewer 2003; and Office 2004 and 2008 for Mac do not properly validate index values for AxesSet records when loading Excel files, which allows remote attackers to execute arbitrary code via a crafted Excel file, aka the "Excel Indexing Validation Vulnerability."

    Published: 12 Aug 2008