AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2008-2303

HIGH · CVSS 10 EPSS 12.99%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-07-14 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 10.0. It affects Java. Its EPSS score suggests a 13.0% probability of exploitation in the next 30 days. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2008-2303
Severity
HIGH
CVSS
10
EPSS
12.99%
Java

Original NVD Description

Integer signedness error in Safari on Apple iPhone before 2.0 and iPod touch before 2.0 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving JavaScript array indices that trigger an out-of-bounds access, a different vulnerability than CVE-2008-2307.