2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-3609——Multiple SQL injection vulnerabilities in eMeeting Online Dating Software 5.2 allow remote attackers to execute arbitrar...
CVE-2007-3610——SQL injection vulnerability in categories_type.php in phpVID 0.9.9 allows remote attackers to execute arbitrary SQL comm...
CVE-2007-3611——admin.php in VRNews 1.1.1, and possibly other 1.x versions, does not require authentication, which allows remote attacke...
CVE-2007-3612——Stack-based buffer overflow in Visual IRC (ViRC) 2.0 allows remote IRC servers to execute arbitrary code via a long resp...
CVE-2007-3613——Cross-site scripting (XSS) vulnerability in ADM:GETLOGFILE in SAP Internet Graphics Service (IGS) allows remote attacker...
CVE-2007-3614——Multiple stack-based buffer overflows in waHTTP.exe (aka the SAP DB Web Server) in SAP DB, possibly 7.3 through 7.5, all...
CVE-2007-3595——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-3399. Reason: This candidate is a duplicate of...
CVE-2007-3591——Unspecified vulnerability in Profile.php in Elite Bulletin Board before 1.0.10 allows remote attackers to modify profile...
CVE-2007-3592——PM.php in Elite Bulletin Board before 1.0.10 allows remote authenticated users to delete arbitrary PM messages and condu...
CVE-2007-3593——Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine NetFlow Analyzer 5 allow remote attackers to inject ...
CVE-2007-3594——Multiple cross-site scripting (XSS) vulnerabilities in AdventNet ManageEngine OpManager 6 and 7 allow remote attackers t...
CVE-2007-3596——inc/vul_check.inc in phpVideoPro before 0.8.8 permits non-alphanumeric characters in the sess_id parameter, which has un...
CVE-2007-3597——Session fixation vulnerability in Zen Cart 1.3.7 and earlier allows remote attackers to hijack web sessions by setting t...
CVE-2007-3589——Multiple SQL injection vulnerabilities in b1gbb 2.24.0 allow remote attackers to execute arbitrary SQL commands via the ...
CVE-2007-3590——Cross-site scripting (XSS) vulnerability in visitenkarte.php in b1gBB 2.24.0 allows remote attackers to inject arbitrary...
CVE-2007-2839——gfax 0.4.2 and probably other versions creates temporary files insecurely, which allows local users to execute arbitrary...
CVE-2007-3588——SQL injection vulnerability in reply.php in VBZooM 1.12 allows remote attackers to execute arbitrary SQL commands via th...
CVE-2007-3572——Incomplete blacklist vulnerability in cgi-bin/runDiagnostics.cgi in the web interface on the Yoggie Pico and Pico Pro al...
CVE-2007-3587——MyCMS 0.9.8 and earlier allows remote attackers to gain privileges via the admin cookie parameter, as demonstrated by a ...
CVE-2007-3573——Multiple SQL injection vulnerabilities in akocomment allow remote attackers to execute arbitrary SQL commands via the (1...
CVE-2007-3574——Multiple cross-site scripting (XSS) vulnerabilities in setup.cgi on the Cisco Linksys WAG54GS Wireless-G ADSL Gateway wi...
CVE-2007-3575——SQL injection vulnerability in includes/functions in FreeDomain.co.nr Clone allows remote attackers to execute arbitrary...
CVE-2007-3576——Microsoft Internet Explorer 6 executes web script from URIs of arbitrary scheme names ending with the "script" character...
CVE-2007-3577——PHPIDS before 20070703 does not properly handle use of the substr method in (1) document.location.search and (2) documen...
CVE-2007-3578——PHPIDS before 20070703 does not properly handle (1) arithmetic expressions and (2) unclosed comments, which allows remot...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now