2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-3959——The IM Server (aka IMserve or IMserver) 2.0.5.30 and probably earlier in Ipswitch Instant Messaging before 2.07 in Ipswi...
CVE-2007-3960——Multiple unspecified vulnerabilities in IBM WebSphere Application Server (WAS) before Fix Pack 21 (6.0.2.21) have unknow...
CVE-2007-3955——Buffer overflow in the IEToolbar.IEContextMenu.1 ActiveX control in LinkedInIEToolbar.dll in the LinkedIn Toolbar 3.0.2....
CVE-2007-3956——TeamSpeak WebServer 2.0 for Windows does not validate parameter value lengths and does not expire TCP sessions, which al...
CVE-2007-3957——Buffer overflow in Nipun Jain xserver 0.1 alpha allows remote attackers to cause a denial of service via a POST request ...
CVE-2007-3958——Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service via a certa...
CVE-2007-2925——The default access control lists (ACL) in ISC BIND 9.4.0, 9.4.1, and 9.5.0a1 through 9.5.0a5 do not set the allow-recurs...
CVE-2007-2926——ISC BIND 9 through 9.5.0a5 uses a weak random number generator during generation of DNS query ids when answering resolve...
CVE-2007-3953——The OLE2 parsing in Norman Antivirus before 5.91.02 allows remote attackers to cause a denial of service via a crafted D...
CVE-2007-3954——Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with SeaMonkey installed and ce...
CVE-2007-3952——The OLE2 parsing in Norman Antivirus before 5.91.02 allows remote attackers to bypass the malware detection via a crafte...
CVE-2007-3951——Multiple buffer overflows in Norman Antivirus 5.90 allow remote attackers to execute arbitrary code via a crafted (1) AC...
CVE-2007-3950——lighttpd 1.4.15, when run on 32 bit platforms, allows remote attackers to cause a denial of service (daemon crash) via u...
CVE-2007-3946——mod_auth (http_auth.c) in lighttpd before 1.4.16 allows remote attackers to cause a denial of service (daemon crash) via...
CVE-2007-3947——request.c in lighttpd 1.4.15 allows remote attackers to cause a denial of service (daemon crash) by sending an HTTP requ...
CVE-2007-3948——connections.c in lighttpd before 1.4.16 might accept more connections than the configured maximum, which allows remote a...
CVE-2007-3949——mod_access.c in lighttpd 1.4.15 ignores trailing / (slash) characters in the URL, which allows remote attackers to bypas...
CVE-2007-3945——Rule Set Based Access Control (RSBAC) before 1.3.5 does not properly use the Linux Kernel Crypto API for the Linux kerne...
CVE-2007-2950——Centennial Discovery 2006 Feature Pack 1, which is used by (1) Numara Asset Manager 8.0 and (2) Symantec Discovery 6.5, ...
CVE-2007-3944——Multiple heap-based buffer overflows in the Perl Compatible Regular Expressions (PCRE) library in the JavaScript engine ...
CVE-2007-3942——Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.1.3 allows remote attackers to include l...
CVE-2007-3943——SQL injection vulnerability in Infinite Responder before 1.48 allows remote attackers to execute arbitrary SQL commands ...
CVE-2007-3941——Cross-site scripting (XSS) vulnerability in profile.php in Jasmine CMS 1.0_1 allows remote authenticated users to inject...
CVE-2007-3928——Buffer overflow in Yahoo! Messenger 8.1 allows user-assisted remote authenticated users to execute arbitrary code via a ...
CVE-2007-3922——Unspecified vulnerability in the Java Runtime Environment (JRE) Applet Class Loader in Sun JDK and JRE 5.0 Update 11 and...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now