2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-4087AlstraSoft Video Share Enterprise allows remote attackers to obtain sensitive information (the full path) via (1) a ' (q...
CVE-2007-4088Multiple cross-site scripting (XSS) vulnerabilities in Vikingboard 0.1.2 allow remote attackers to inject arbitrary web ...
CVE-2007-4089Vikingboard 0.1.2 allows remote attackers to obtain sensitive information via the debug parameter to (1) forum.php, (2) ...
CVE-2007-4090Multiple cross-site scripting (XSS) vulnerabilities in Vikingboard 0.1.2 allow remote attackers to inject arbitrary web ...
CVE-2007-4049Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2000-1205. Reason: This candidate is a duplicate of...
CVE-2007-4052Cross-site scripting (XSS) vulnerability in utilities/login.asp in nukedit 4.9.7 and earlier allows remote attackers to ...
CVE-2007-4048Cross-site scripting (XSS) vulnerability in index.php in phpSysInfo 2.5.4-dev and earlier allows remote attackers to inj...
CVE-2007-4050Unspecified vulnerability in WebUI in ADempiere Bazaar before 3.3 beta Victoria edition allows remote attackers to acces...
CVE-2007-4051Heap-based buffer overflow in the FindFiles function in UltraDefrag 1.0.3 allows local users to gain privileges via a fi...
CVE-2007-4040HIGH8.8Argument injection vulnerability involving Microsoft Outlook and Outlook Express, when certain URIs are registered, allo...
CVE-2007-4043CRITICAL9.8file.cgi in Secure Computing SecurityReporter (aka Network Security Analyzer) before 4.6.3 allows remote attackers to by...
CVE-2007-4044Rejected reason: The MS-RPC functionality in smbd in Samba 3 on SUSE Linux before 20070720 does not include "one charact...
CVE-2007-3532NVIDIA drivers (nvidia-drivers) before 1.0.7185, 1.0.9639, and 100.14.11, as used in Gentoo Linux and possibly other dis...
CVE-2007-4039CRITICAL9.8Argument injection vulnerability involving Mozilla, when certain URIs are registered, allows remote attackers to conduct...
CVE-2007-4047geoBlog (aka BitDamaged) 1 does not require authentication for (1) deletecomment.php, (2) deleteblog.php, and (3) listco...
CVE-2007-4034Stack-based buffer overflow in the YDPCTL.YDPControl.1 (aka Yahoo! Installer Plugin for Widgets) ActiveX control before ...
CVE-2007-4035Guidance Software EnCase does not properly handle (1) certain malformed MBR partition tables with many entries, which al...
CVE-2007-4031Directory traversal vulnerability in a certain ActiveX control in Nessus Vulnerability Scanner 3.0.6 allows remote attac...
CVE-2007-4045The CUPS service, as used in SUSE Linux before 20070720 and other Linux distributions, allows remote attackers to cause ...
CVE-2007-4032Buffer overflow in CrystalPlayer Pro 1.98 allows user-assisted remote attackers to execute arbitrary code via a long str...
CVE-2007-4033Buffer overflow in the intT1_EnvGetCompletePath function in lib/t1lib/t1env.c in t1lib 5.1.1 allows context-dependent at...
CVE-2007-4046SQL injection vulnerability in index.php in the Pony Gallery (com_ponygallery) 1.5 and earlier component for Joomla! all...
CVE-2007-4036Guidance Software EnCase allows user-assisted remote attackers to cause a denial of service via (1) a corrupted Microsof...
CVE-2007-4037Guidance Software EnCase allows user-assisted attackers to trigger a buffer over-read and application crash via a malfor...
CVE-2007-4038Argument injection vulnerability in Mozilla Firefox before 2.0.0.5, when running on systems with Thunderbird 1.5 install...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now