2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-4353 | — | — | 0.3% | Aug 15, 2007 | Multiple buffer overflows in IBM AIX 5.2 and 5.3 allow local users in the system group to gain root privileges via unspe... |
| CVE-2007-4354 | — | — | 0.4% | Aug 15, 2007 | Buffer overflow in fileplace in bos.perf.tools in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecif... |
| CVE-2007-4355 | — | — | 0.4% | Aug 15, 2007 | Buffer overflow in the at program on IBM AIX 5.3 allows local users to gain privileges via unspecified vectors. |
| CVE-2007-4356 | — | — | 5.6% | Aug 15, 2007 | Microsoft Internet Explorer 6 and 7 embeds FTP credentials in HTML files that are retrieved during an FTP session, which... |
| CVE-2007-4357 | — | — | 1.3% | Aug 15, 2007 | Mozilla Firefox 2.0.0.6 and earlier allows remote attackers to spoof the contents of the status bar via a link to a data... |
| CVE-2007-3382 | — | — | 37.5% | Aug 14, 2007 | Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1.36, and 3.3 to 3.3.2 treats single quotes ... |
| CVE-2007-3386 | — | — | 59.0% | Aug 14, 2007 | Cross-site scripting (XSS) vulnerability in the Host Manager Servlet for Apache Tomcat 6.0.0 to 6.0.13 and 5.5.0 to 5.5.... |
| CVE-2007-3385 | — | — | 16.9% | Aug 14, 2007 | Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1.36, and 3.3 to 3.3.2 does not properly han... |
| CVE-2007-3033 | — | — | 28.4% | Aug 14, 2007 | Cross-site scripting (XSS) vulnerability in Windows Vista Feed Headlines Gadget (aka Sidebar RSS Feeds Gadget) in Window... |
| CVE-2007-3032 | — | — | 25.2% | Aug 14, 2007 | Unspecified vulnerability in Windows Vista Contacts Gadget in Windows Vista allows user-assisted remote attackers to exe... |
| CVE-2007-1749 | — | — | 41.5% | Aug 14, 2007 | Integer underflow in the CDownloadSink class code in the Vector Markup Language (VML) component (VGX.DLL), as used in In... |
| CVE-2007-0948 | — | — | 12.1% | Aug 14, 2007 | Heap-based buffer overflow in Microsoft Virtual PC 2004 and PC for Mac 7.1 and 7, and Virtual Server 2005 and 2005 R2, a... |
| CVE-2007-3891 | — | — | 25.2% | Aug 14, 2007 | Unspecified vulnerability in Windows Vista Weather Gadgets in Windows Vista allows remote attackers to execute arbitrary... |
| CVE-2007-3041 | — | — | 29.0% | Aug 14, 2007 | Unspecified vulnerability in the pdwizard.ocx ActiveX object for Internet Explorer 5.01, 6 SP1, and 7 allows remote atta... |
| CVE-2007-3037 | — | — | 21.8% | Aug 14, 2007 | Microsoft Windows Media Player 7.1, 9, 10, and 11 allows remote attackers to execute arbitrary code via a skin file (WMZ... |
| CVE-2007-2224 | — | — | 34.5% | Aug 14, 2007 | Object linking and embedding (OLE) Automation, as used in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, O... |
| CVE-2007-3035 | — | — | 25.0% | Aug 14, 2007 | Unspecified vulnerability in Microsoft Windows Media Player 7.1, 9, 10, and 11 allows remote attackers to execute arbitr... |
| CVE-2007-3034 | — | — | 54.7% | Aug 14, 2007 | Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, ... |
| CVE-2007-2223 | — | — | 48.7% | Aug 14, 2007 | Microsoft XML Core Services (MSXML) 3.0 through 6.0 allows remote attackers to execute arbitrary code via the substringD... |
| CVE-2007-3890 | — | — | 28.9% | Aug 14, 2007 | Microsoft Excel in Office 2000 SP3, Office XP SP3, Office 2003 SP2, and Office 2004 for Mac allows remote attackers to e... |
| CVE-2007-0943 | — | — | 27.1% | Aug 14, 2007 | Unspecified vulnerability in Internet Explorer 5.01 and 6 SP1 allows remote attackers to execute arbitrary code via craf... |
| CVE-2007-2216 | — | — | 41.4% | Aug 14, 2007 | The tblinf32.dll (aka vstlbinf.dll) ActiveX control for Internet Explorer 5.01, 6 SP1, and 7 uses an incorrect IObjectsa... |
| CVE-2007-4342 | — | — | 2.0% | Aug 14, 2007 | PHP remote file inclusion vulnerability in include.php in PHPCentral Login 1.0 allows remote attackers to execute arbitr... |
| CVE-2007-3852 | — | — | 0.4% | Aug 14, 2007 | The init script (sysstat.in) in sysstat 5.1.2 up to 7.1.6 creates /tmp/sysstat.run insecurely, which allows local users ... |
| CVE-2007-4341 | — | — | 2.7% | Aug 14, 2007 | PHP remote file inclusion vulnerability in adm/my_statistics.php in Omnistar Lib2 PHP 0.2 allows remote attackers to exe... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now