2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-4105A certain ActiveX control in BaiduBar.dll in Baidu Soba Search Bar 5.4 allows remote attackers to execute arbitrary code...
CVE-2007-4100MLDonkey before 2.9.0 does not load certain code from $MLDONKEY/web_infos/ before the network modules become active, whi...
CVE-2007-4106SQL injection vulnerability in login.asp in CodeWidgets Pay Roll - Time Sheet and Punch Card Application With Web Interf...
CVE-2007-4102Cross-site scripting (XSS) vulnerability in search.php for sBlog 0.7.3 Beta allows remote attackers to inject arbitrary ...
CVE-2007-4104Multiple cross-site scripting (XSS) vulnerabilities in the WP-FeedStats before 2.4 plugin for WordPress allow remote att...
CVE-2007-4115Multiple cross-site scripting (XSS) vulnerabilities in IT!CMS (itcms) 0.2 allow remote attackers to inject arbitrary web...
CVE-2007-4107SQL injection vulnerability in editpost.php in phpMyForum before 4.1.4 allows remote attackers to execute arbitrary SQL ...
CVE-2007-4108SQL injection vulnerability in sign_in.aspx in WebEvents (Online Event Registration Template) allows remote attackers to...
CVE-2007-4109SQL injection vulnerability in sign_in.aspx in WebStore (Online Store Application Template) allows remote attackers to e...
CVE-2007-4110SQL injection vulnerability in sign_in.aspx in Message Board / Threaded Discussion Forum Application Template allows rem...
CVE-2007-4111SQL injection vulnerability in the login script in Real Estate listing website application template, when logging in as ...
CVE-2007-4112Multiple SQL injection vulnerabilities in Advanced Webhost Billing System (AWBS) before 2.6.0, when magic_quotes_gpc is ...
CVE-2007-4113Unspecified vulnerability in Advanced Webhost Billing System (AWBS) before 2.6.0 allows remote authenticated users to ob...
CVE-2007-4114Multiple SQL injection vulnerabilities in unuttum.asp in SuskunDuygular Uyelik Sistemi 1.2 allow remote attackers to exe...
CVE-2007-3387Integer overflow in the StreamPredictor::StreamPredictor function in xpdf 3.02, as used in (1) poppler before 0.5.91, (2...
CVE-2007-4099Tor before 0.1.2.15 can select a guard node beyond the first listed never-before-connected-to guard node, which allows r...
CVE-2007-4098Tor before 0.1.2.15 does not properly distinguish "streamids from different exits," which might allow remote attackers w...
CVE-2007-4096Buffer overflow in Tor before 0.1.2.15, when using BSD natd support, allows remote attackers to cause a denial of servic...
CVE-2007-4097Tor before 0.1.2.15 sends "destroy cells" containing the reason for tearing down a circuit, which allows remote attacker...
CVE-2007-4092Directory traversal vulnerability in index.php in iFoto 1.0.1 and earlier allows remote attackers to list arbitrary dire...
CVE-2007-4093Minb Is Not a Blog (minb) stores sensitive information under the web root with insufficient access control, which allows...
CVE-2007-4094PHP remote file inclusion vulnerability in library/authorize.php in IDevSpot PhpHostBot allows remote attackers to execu...
CVE-2007-4095SQL injection vulnerability in BSM Store Dependent Forums 1.02 allows remote attackers to execute arbitrary SQL commands...
CVE-2007-3911Multiple heap-based buffer overflows in (1) clsscheduler.exe (aka scheduler client) and (2) srvscheduler.exe (aka schedu...
CVE-2007-4053SQL injection vulnerability in include/img_view.class.php in LinPHA 1.3.1 and earlier allows remote attackers to execute...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now