2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-3959The IM Server (aka IMserve or IMserver) 2.0.5.30 and probably earlier in Ipswitch Instant Messaging before 2.07 in Ipswi...
CVE-2007-3960Multiple unspecified vulnerabilities in IBM WebSphere Application Server (WAS) before Fix Pack 21 (6.0.2.21) have unknow...
CVE-2007-3955Buffer overflow in the IEToolbar.IEContextMenu.1 ActiveX control in LinkedInIEToolbar.dll in the LinkedIn Toolbar 3.0.2....
CVE-2007-3956TeamSpeak WebServer 2.0 for Windows does not validate parameter value lengths and does not expire TCP sessions, which al...
CVE-2007-3957Buffer overflow in Nipun Jain xserver 0.1 alpha allows remote attackers to cause a denial of service via a POST request ...
CVE-2007-3958Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service via a certa...
CVE-2007-2925The default access control lists (ACL) in ISC BIND 9.4.0, 9.4.1, and 9.5.0a1 through 9.5.0a5 do not set the allow-recurs...
CVE-2007-2926ISC BIND 9 through 9.5.0a5 uses a weak random number generator during generation of DNS query ids when answering resolve...
CVE-2007-3953The OLE2 parsing in Norman Antivirus before 5.91.02 allows remote attackers to cause a denial of service via a crafted D...
CVE-2007-3954Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with SeaMonkey installed and ce...
CVE-2007-3952The OLE2 parsing in Norman Antivirus before 5.91.02 allows remote attackers to bypass the malware detection via a crafte...
CVE-2007-3951Multiple buffer overflows in Norman Antivirus 5.90 allow remote attackers to execute arbitrary code via a crafted (1) AC...
CVE-2007-3950lighttpd 1.4.15, when run on 32 bit platforms, allows remote attackers to cause a denial of service (daemon crash) via u...
CVE-2007-3946mod_auth (http_auth.c) in lighttpd before 1.4.16 allows remote attackers to cause a denial of service (daemon crash) via...
CVE-2007-3947request.c in lighttpd 1.4.15 allows remote attackers to cause a denial of service (daemon crash) by sending an HTTP requ...
CVE-2007-3948connections.c in lighttpd before 1.4.16 might accept more connections than the configured maximum, which allows remote a...
CVE-2007-3949mod_access.c in lighttpd 1.4.15 ignores trailing / (slash) characters in the URL, which allows remote attackers to bypas...
CVE-2007-3945Rule Set Based Access Control (RSBAC) before 1.3.5 does not properly use the Linux Kernel Crypto API for the Linux kerne...
CVE-2007-2950Centennial Discovery 2006 Feature Pack 1, which is used by (1) Numara Asset Manager 8.0 and (2) Symantec Discovery 6.5, ...
CVE-2007-3944Multiple heap-based buffer overflows in the Perl Compatible Regular Expressions (PCRE) library in the JavaScript engine ...
CVE-2007-3942Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.1.3 allows remote attackers to include l...
CVE-2007-3943SQL injection vulnerability in Infinite Responder before 1.48 allows remote attackers to execute arbitrary SQL commands ...
CVE-2007-3941Cross-site scripting (XSS) vulnerability in profile.php in Jasmine CMS 1.0_1 allows remote authenticated users to inject...
CVE-2007-3928Buffer overflow in Yahoo! Messenger 8.1 allows user-assisted remote authenticated users to execute arbitrary code via a ...
CVE-2007-3922Unspecified vulnerability in the Java Runtime Environment (JRE) Applet Class Loader in Sun JDK and JRE 5.0 Update 11 and...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now