2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-6018 | — | — | 1.8% | Jan 11, 2008 | IMP Webmail Client 4.1.5, Horde Application Framework 3.1.5, and Horde Groupware Webmail Edition 1.0.3 does not validate... |
| CVE-2007-6680 | — | — | 0.4% | Jan 10, 2008 | Trusted Execution in IBM AIX 6.1 uses an incorrect pathname argument in a call to the trustchk_block_write function, whi... |
| CVE-2007-6679 | — | — | 2.3% | Jan 10, 2008 | Unspecified vulnerability in the Administrative Console in IBM WebSphere Application Server 6.1 before Fix Pack 13 has u... |
| CVE-2007-6678 | — | — | — | Jan 10, 2008 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-6167. Reason: This candidate is a duplicate of... |
| CVE-2007-6677 | — | — | 1.5% | Jan 10, 2008 | Cross-site scripting (XSS) vulnerability in Peter's Random Anti-Spam Image 0.2.4 and earlier plugin for WordPress allows... |
| CVE-2007-0012 | — | — | 1.9% | Jan 9, 2008 | Sun JRE 5.0 before update 14 allows remote attackers to cause a denial of service (Internet Explorer crash) via an objec... |
| CVE-2007-6250 | — | — | 24.3% | Jan 9, 2008 | Stack-based buffer overflow in AOL AOLMediaPlaybackControl (AOLMediaPlaybackControl.exe), as used by AmpX ActiveX contro... |
| CVE-2007-6531 | — | — | 2.9% | Jan 9, 2008 | Stack-based buffer overflow in the Panel (xfce4-panel) component in Xfce before 4.4.2 might allow remote attackers to ex... |
| CVE-2007-6532 | — | — | 4.0% | Jan 9, 2008 | Double free vulnerability in the Widget Library (libxfcegui4) in Xfce before 4.4.2 might allow remote attackers to execu... |
| CVE-2007-5762 | — | — | 0.9% | Jan 9, 2008 | NICM.SYS driver 3.0.0.4, as used in Novell NetWare Client 4.91 SP4, allows local users to execute arbitrary code by open... |
| CVE-2007-6600 | — | — | 3.1% | Jan 9, 2008 | PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, 7.4 before 7.4.19, and 7.3 before 7.3.21 uses superus... |
| CVE-2007-6601 | — | — | 1.6% | Jan 9, 2008 | The DBLink module in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, 7.4 before 7.4.19, and 7.3 befor... |
| CVE-2007-4772 | — | — | 3.8% | Jan 9, 2008 | The regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 befor... |
| CVE-2007-4769 | — | — | 3.6% | Jan 9, 2008 | The regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 befor... |
| CVE-2007-5402 | — | — | 0.9% | Jan 9, 2008 | Multiple SQL injection vulnerabilities in Layton HelpBox 3.7.1 allow (1) remote attackers to execute arbitrary SQL comma... |
| CVE-2007-5404 | — | — | 1.2% | Jan 9, 2008 | Layton HelpBox 3.7.1 generates different responses depending on whether or not a username is valid in a failed login att... |
| CVE-2007-5403 | — | — | 1.1% | Jan 9, 2008 | Multiple cross-site scripting (XSS) vulnerabilities in Layton HelpBox 3.7.1 allow remote authenticated users to inject a... |
| CVE-2007-5401 | — | — | 1.1% | Jan 9, 2008 | Unrestricted file upload vulnerability in uploadrequest.asp in Layton HelpBox 3.7.1 allows remote authenticated users to... |
| CVE-2007-5616 | — | — | 0.9% | Jan 9, 2008 | ssh-signer in SSH Tectia Client and Server 5.x before 5.2.4, and 5.3.x before 5.3.6, on Unix and Linux allows local user... |
| CVE-2007-6067 | — | — | 3.9% | Jan 9, 2008 | Algorithmic complexity vulnerability in the regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 be... |
| CVE-2007-5665 | — | — | 0.4% | Jan 9, 2008 | STEngine.exe 3.5.0.20 in Novell ZENworks Endpoint Security Management (ESM) 3.5, and other ESM versions before 3.5.0.82,... |
| CVE-2007-5761 | — | — | 0.4% | Jan 9, 2008 | The NantSys device 5.0.0.115 in Motorola netOctopus 5.1.2 build 1011 has weak permissions for the \\.\NantSys device int... |
| CVE-2007-5360 | — | — | 15.3% | Jan 8, 2008 | Buffer overflow in OpenPegasus Management server, when compiled to use PAM and with PEGASUS_USE_PAM_STANDALONE_PROC defi... |
| CVE-2007-5352 | — | — | 2.6% | Jan 8, 2008 | Unspecified vulnerability in Local Security Authority Subsystem Service (LSASS) in Microsoft Windows 2000 SP4, XP SP2, a... |
| CVE-2007-0066 | — | — | 31.5% | Jan 8, 2008 | The kernel in Microsoft Windows 2000 SP4, XP SP2, and Server 2003, when ICMP Router Discovery Protocol (RDP) is enabled,... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now