2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-3434 | — | — | 2.7% | Jun 27, 2007 | index.php in Pharmacy System 2 and earlier allows remote attackers to obtain sensitive information via a ' (quote) chara... |
| CVE-2007-3433 | — | — | 1.0% | Jun 27, 2007 | SQL injection vulnerability in index.php in Pharmacy System 2 and earlier allows remote attackers to execute arbitrary S... |
| CVE-2007-3432 | — | — | 8.2% | Jun 27, 2007 | Unrestricted file upload vulnerability in admin/images.php in Pluxml 0.3.1 allows remote attackers to upload and execute... |
| CVE-2007-3431 | — | — | 70.7% | Jun 27, 2007 | PHP remote file inclusion vulnerability in cal.func.php in Valerio Capello Dagger - The Cutting Edge r23jan2007 allows r... |
| CVE-2007-3430 | — | — | 1.2% | Jun 27, 2007 | SQL injection vulnerability in index.php in Simple Invoices 2007 05 25 allows remote attackers to execute arbitrary SQL ... |
| CVE-2007-3429 | — | — | 2.1% | Jun 27, 2007 | Unrestricted file upload vulnerability in signup.php in e107 0.7.8 and earlier, when photograph upload is enabled, allow... |
| CVE-2007-3428 | — | — | 1.3% | Jun 27, 2007 | Multiple unspecified vulnerabilities in phpTrafficA before 1.4.2 allow remote attackers to have an unknown impact via th... |
| CVE-2007-3427 | — | — | 1.6% | Jun 27, 2007 | SQL injection vulnerability in index.php in phpTrafficA 1.4.2 and earlier allows remote attackers to execute arbitrary S... |
| CVE-2007-3426 | — | — | 1.9% | Jun 27, 2007 | Cross-site scripting (XSS) vulnerability in index.php in phpTrafficA 1.4.2 and earlier allows remote attackers to inject... |
| CVE-2007-3425 | — | — | 3.1% | Jun 27, 2007 | Directory traversal vulnerability in index.php in phpTrafficA 1.4.2 and earlier allows remote attackers to include arbit... |
| CVE-2007-1664 | — | — | 2.2% | Jun 27, 2007 | ekg before 1:1.7~rc2-1etch1 on Debian GNU/Linux Etch allows remote attackers to cause a denial of service (NULL pointer ... |
| CVE-2007-1665 | — | — | 2.2% | Jun 27, 2007 | Memory leak in the token OCR functionality in ekg before 1:1.7~rc2-1etch1 on Debian GNU/Linux Etch allows remote attacke... |
| CVE-2007-3449 | — | — | 1.1% | Jun 27, 2007 | SQL injection vulnerability in member.php in 6ALBlog allows remote attackers to execute arbitrary SQL commands via the n... |
| CVE-2007-3423 | — | — | 1.1% | Jun 26, 2007 | cgi-bin/cgi-lib/instantmessage.pl in web-app.org WebAPP before 0.9.9.7 uses the From field of an instant message as the ... |
| CVE-2007-3421 | — | — | 1.1% | Jun 26, 2007 | The (1) login, (2) admin profile edit, (3) reminder, (4) edit profile, (5) profile view, (6) gallery view, (7) gallery c... |
| CVE-2007-3420 | — | — | 1.1% | Jun 26, 2007 | The Random Cookie Password functionality in the loaduser function in cgi-bin/cgi-lib/subs.pl in web-app.org WebAPP befor... |
| CVE-2007-3417 | — | — | 1.0% | Jun 26, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in cgi-bin/cgi-lib/search.pl in web-app.org WebAPP before 0.9.9.7 al... |
| CVE-2007-3411 | — | — | 1.1% | Jun 26, 2007 | SQL injection vulnerability in edit_image.asp in ClickGallery Server 5.1 and earlier allows remote attackers to execute ... |
| CVE-2007-3419 | — | — | 1.1% | Jun 26, 2007 | The editprofile3 function in cgi-bin/cgi-lib/user.pl in web-app.org WebAPP before 0.9.9.7 does not properly check the (1... |
| CVE-2007-3418 | — | — | 1.1% | Jun 26, 2007 | The displaypost function in cgi-bin/cgi-lib/forum_display.pl in web-app.org WebAPP before 0.9.9.7 does not display usern... |
| CVE-2007-3415 | — | — | 1.1% | Jun 26, 2007 | Multiple SQL injection vulnerabilities in index.php in phpRaider 1.0.0 rc8 allow remote attackers to execute arbitrary S... |
| CVE-2007-3412 | — | — | 1.0% | Jun 26, 2007 | Cross-site scripting (XSS) vulnerability in edit_image.asp in ClickGallery Server 5.1 and earlier allows remote attacker... |
| CVE-2007-3413 | — | — | 1.0% | Jun 26, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in bosDataGrid 2.50 and earlier allow remote attackers to inject arb... |
| CVE-2007-3414 | — | — | 1.9% | Jun 26, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in access2asp 4.5 and earlier allow remote attackers to inject arbit... |
| CVE-2007-3424 | — | — | 1.1% | Jun 26, 2007 | The moveim function in cgi-bin/cgi-lib/instantmessage.pl in web-app.org WebAPP before 0.9.9.7 uses the tocat parameter a... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now