2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-3609 | — | — | 1.8% | Jul 6, 2007 | Multiple SQL injection vulnerabilities in eMeeting Online Dating Software 5.2 allow remote attackers to execute arbitrar... |
| CVE-2007-3610 | — | — | 1.2% | Jul 6, 2007 | SQL injection vulnerability in categories_type.php in phpVID 0.9.9 allows remote attackers to execute arbitrary SQL comm... |
| CVE-2007-3611 | — | — | 3.3% | Jul 6, 2007 | admin.php in VRNews 1.1.1, and possibly other 1.x versions, does not require authentication, which allows remote attacke... |
| CVE-2007-3612 | — | — | 4.9% | Jul 6, 2007 | Stack-based buffer overflow in Visual IRC (ViRC) 2.0 allows remote IRC servers to execute arbitrary code via a long resp... |
| CVE-2007-3613 | — | — | 2.4% | Jul 6, 2007 | Cross-site scripting (XSS) vulnerability in ADM:GETLOGFILE in SAP Internet Graphics Service (IGS) allows remote attacker... |
| CVE-2007-3614 | — | — | 70.0% | Jul 6, 2007 | Multiple stack-based buffer overflows in waHTTP.exe (aka the SAP DB Web Server) in SAP DB, possibly 7.3 through 7.5, all... |
| CVE-2007-3595 | — | — | — | Jul 6, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-3399. Reason: This candidate is a duplicate of... |
| CVE-2007-3591 | — | — | 1.2% | Jul 6, 2007 | Unspecified vulnerability in Profile.php in Elite Bulletin Board before 1.0.10 allows remote attackers to modify profile... |
| CVE-2007-3592 | — | — | 1.1% | Jul 6, 2007 | PM.php in Elite Bulletin Board before 1.0.10 allows remote authenticated users to delete arbitrary PM messages and condu... |
| CVE-2007-3593 | — | — | 4.1% | Jul 6, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine NetFlow Analyzer 5 allow remote attackers to inject ... |
| CVE-2007-3594 | — | — | 5.8% | Jul 6, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in AdventNet ManageEngine OpManager 6 and 7 allow remote attackers t... |
| CVE-2007-3596 | — | — | 1.1% | Jul 6, 2007 | inc/vul_check.inc in phpVideoPro before 0.8.8 permits non-alphanumeric characters in the sess_id parameter, which has un... |
| CVE-2007-3597 | — | — | 1.8% | Jul 6, 2007 | Session fixation vulnerability in Zen Cart 1.3.7 and earlier allows remote attackers to hijack web sessions by setting t... |
| CVE-2007-3589 | — | — | 1.0% | Jul 5, 2007 | Multiple SQL injection vulnerabilities in b1gbb 2.24.0 allow remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2007-3590 | — | — | 3.2% | Jul 5, 2007 | Cross-site scripting (XSS) vulnerability in visitenkarte.php in b1gBB 2.24.0 allows remote attackers to inject arbitrary... |
| CVE-2007-2839 | — | — | 0.8% | Jul 5, 2007 | gfax 0.4.2 and probably other versions creates temporary files insecurely, which allows local users to execute arbitrary... |
| CVE-2007-3588 | — | — | 1.1% | Jul 5, 2007 | SQL injection vulnerability in reply.php in VBZooM 1.12 allows remote attackers to execute arbitrary SQL commands via th... |
| CVE-2007-3572 | — | — | 8.4% | Jul 5, 2007 | Incomplete blacklist vulnerability in cgi-bin/runDiagnostics.cgi in the web interface on the Yoggie Pico and Pico Pro al... |
| CVE-2007-3587 | — | — | 2.9% | Jul 5, 2007 | MyCMS 0.9.8 and earlier allows remote attackers to gain privileges via the admin cookie parameter, as demonstrated by a ... |
| CVE-2007-3573 | — | — | 1.0% | Jul 5, 2007 | Multiple SQL injection vulnerabilities in akocomment allow remote attackers to execute arbitrary SQL commands via the (1... |
| CVE-2007-3574 | — | — | 1.9% | Jul 5, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in setup.cgi on the Cisco Linksys WAG54GS Wireless-G ADSL Gateway wi... |
| CVE-2007-3575 | — | — | 1.7% | Jul 5, 2007 | SQL injection vulnerability in includes/functions in FreeDomain.co.nr Clone allows remote attackers to execute arbitrary... |
| CVE-2007-3576 | — | — | 12.9% | Jul 5, 2007 | Microsoft Internet Explorer 6 executes web script from URIs of arbitrary scheme names ending with the "script" character... |
| CVE-2007-3577 | — | — | 1.1% | Jul 5, 2007 | PHPIDS before 20070703 does not properly handle use of the substr method in (1) document.location.search and (2) documen... |
| CVE-2007-3578 | — | — | 1.1% | Jul 5, 2007 | PHPIDS before 20070703 does not properly handle (1) arithmetic expressions and (2) unclosed comments, which allows remot... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now