2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-4105——A certain ActiveX control in BaiduBar.dll in Baidu Soba Search Bar 5.4 allows remote attackers to execute arbitrary code...
CVE-2007-4100——MLDonkey before 2.9.0 does not load certain code from $MLDONKEY/web_infos/ before the network modules become active, whi...
CVE-2007-4106——SQL injection vulnerability in login.asp in CodeWidgets Pay Roll - Time Sheet and Punch Card Application With Web Interf...
CVE-2007-4102——Cross-site scripting (XSS) vulnerability in search.php for sBlog 0.7.3 Beta allows remote attackers to inject arbitrary ...
CVE-2007-4104——Multiple cross-site scripting (XSS) vulnerabilities in the WP-FeedStats before 2.4 plugin for WordPress allow remote att...
CVE-2007-4115——Multiple cross-site scripting (XSS) vulnerabilities in IT!CMS (itcms) 0.2 allow remote attackers to inject arbitrary web...
CVE-2007-4107——SQL injection vulnerability in editpost.php in phpMyForum before 4.1.4 allows remote attackers to execute arbitrary SQL ...
CVE-2007-4108——SQL injection vulnerability in sign_in.aspx in WebEvents (Online Event Registration Template) allows remote attackers to...
CVE-2007-4109——SQL injection vulnerability in sign_in.aspx in WebStore (Online Store Application Template) allows remote attackers to e...
CVE-2007-4110——SQL injection vulnerability in sign_in.aspx in Message Board / Threaded Discussion Forum Application Template allows rem...
CVE-2007-4111——SQL injection vulnerability in the login script in Real Estate listing website application template, when logging in as ...
CVE-2007-4112——Multiple SQL injection vulnerabilities in Advanced Webhost Billing System (AWBS) before 2.6.0, when magic_quotes_gpc is ...
CVE-2007-4113——Unspecified vulnerability in Advanced Webhost Billing System (AWBS) before 2.6.0 allows remote authenticated users to ob...
CVE-2007-4114——Multiple SQL injection vulnerabilities in unuttum.asp in SuskunDuygular Uyelik Sistemi 1.2 allow remote attackers to exe...
CVE-2007-3387——Integer overflow in the StreamPredictor::StreamPredictor function in xpdf 3.02, as used in (1) poppler before 0.5.91, (2...
CVE-2007-4099——Tor before 0.1.2.15 can select a guard node beyond the first listed never-before-connected-to guard node, which allows r...
CVE-2007-4098——Tor before 0.1.2.15 does not properly distinguish "streamids from different exits," which might allow remote attackers w...
CVE-2007-4096——Buffer overflow in Tor before 0.1.2.15, when using BSD natd support, allows remote attackers to cause a denial of servic...
CVE-2007-4097——Tor before 0.1.2.15 sends "destroy cells" containing the reason for tearing down a circuit, which allows remote attacker...
CVE-2007-4092——Directory traversal vulnerability in index.php in iFoto 1.0.1 and earlier allows remote attackers to list arbitrary dire...
CVE-2007-4093——Minb Is Not a Blog (minb) stores sensitive information under the web root with insufficient access control, which allows...
CVE-2007-4094——PHP remote file inclusion vulnerability in library/authorize.php in IDevSpot PhpHostBot allows remote attackers to execu...
CVE-2007-4095——SQL injection vulnerability in BSM Store Dependent Forums 1.02 allows remote attackers to execute arbitrary SQL commands...
CVE-2007-3911——Multiple heap-based buffer overflows in (1) clsscheduler.exe (aka scheduler client) and (2) srvscheduler.exe (aka schedu...
CVE-2007-4053——SQL injection vulnerability in include/img_view.class.php in LinPHA 1.3.1 and earlier allows remote attackers to execute...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now