2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-4107——SQL injection vulnerability in editpost.php in phpMyForum before 4.1.4 allows remote attackers to execute arbitrary SQL ...
CVE-2007-4108——SQL injection vulnerability in sign_in.aspx in WebEvents (Online Event Registration Template) allows remote attackers to...
CVE-2007-4109——SQL injection vulnerability in sign_in.aspx in WebStore (Online Store Application Template) allows remote attackers to e...
CVE-2007-4110——SQL injection vulnerability in sign_in.aspx in Message Board / Threaded Discussion Forum Application Template allows rem...
CVE-2007-4111——SQL injection vulnerability in the login script in Real Estate listing website application template, when logging in as ...
CVE-2007-4112——Multiple SQL injection vulnerabilities in Advanced Webhost Billing System (AWBS) before 2.6.0, when magic_quotes_gpc is ...
CVE-2007-4113——Unspecified vulnerability in Advanced Webhost Billing System (AWBS) before 2.6.0 allows remote authenticated users to ob...
CVE-2007-4114——Multiple SQL injection vulnerabilities in unuttum.asp in SuskunDuygular Uyelik Sistemi 1.2 allow remote attackers to exe...
CVE-2007-3387——Integer overflow in the StreamPredictor::StreamPredictor function in xpdf 3.02, as used in (1) poppler before 0.5.91, (2...
CVE-2007-4099——Tor before 0.1.2.15 can select a guard node beyond the first listed never-before-connected-to guard node, which allows r...
CVE-2007-4098——Tor before 0.1.2.15 does not properly distinguish "streamids from different exits," which might allow remote attackers w...
CVE-2007-4096——Buffer overflow in Tor before 0.1.2.15, when using BSD natd support, allows remote attackers to cause a denial of servic...
CVE-2007-4097——Tor before 0.1.2.15 sends "destroy cells" containing the reason for tearing down a circuit, which allows remote attacker...
CVE-2007-4092——Directory traversal vulnerability in index.php in iFoto 1.0.1 and earlier allows remote attackers to list arbitrary dire...
CVE-2007-4093——Minb Is Not a Blog (minb) stores sensitive information under the web root with insufficient access control, which allows...
CVE-2007-4094——PHP remote file inclusion vulnerability in library/authorize.php in IDevSpot PhpHostBot allows remote attackers to execu...
CVE-2007-4095——SQL injection vulnerability in BSM Store Dependent Forums 1.02 allows remote attackers to execute arbitrary SQL commands...
CVE-2007-3911——Multiple heap-based buffer overflows in (1) clsscheduler.exe (aka scheduler client) and (2) srvscheduler.exe (aka schedu...
CVE-2007-4053——SQL injection vulnerability in include/img_view.class.php in LinPHA 1.3.1 and earlier allows remote attackers to execute...
CVE-2007-4054——SQL injection vulnerability in category.php in PHP123 Top Sites allows remote attackers to execute arbitrary SQL command...
CVE-2007-4055——SQL injection vulnerability in comments_get.asp in SimpleBlog 3.0 allows remote attackers to execute arbitrary SQL comma...
CVE-2007-4056——SQL injection vulnerability in directory.php in Prozilla Adult Directory allows remote attackers to execute arbitrary SQ...
CVE-2007-4057——Unrestricted file upload vulnerability in pfs.php in Neocrome Seditio 121 and earlier allows remote authenticated users ...
CVE-2007-4058——Absolute path traversal vulnerability in a certain ActiveX control in vielib.dll 2.2.5.42958 in EMC VMware 6.0.0 allows ...
CVE-2007-4059——Absolute path traversal vulnerability in a certain ActiveX control in IntraProcessLogging.dll 5.5.3.42958 in EMC VMware ...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now