2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-3183 | — | — | 4.5% | Jun 26, 2007 | Multiple SQL injection vulnerabilities in Calendarix 0.7.20070307, when magic_quotes_gpc is disabled, allow remote attac... |
| CVE-2007-3182 | — | — | 4.3% | Jun 26, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in Calendarix 0.7.20070307, when register_globals is enabled, allow ... |
| CVE-2007-3259 | — | — | 1.7% | Jun 26, 2007 | Calendarix 0.7.20070307 allows remote attackers to obtain sensitive information via (1) an invalid month[] parameter to ... |
| CVE-2007-3393 | — | — | 2.0% | Jun 26, 2007 | Off-by-one error in the DHCP/BOOTP dissector in Wireshark before 0.99.6 allows remote attackers to cause a denial of ser... |
| CVE-2007-3392 | — | — | 2.9% | Jun 26, 2007 | Wireshark before 0.99.6 allows remote attackers to cause a denial of service via malformed (1) SSL or (2) MMS packets th... |
| CVE-2007-3389 | — | — | 16.3% | Jun 26, 2007 | Wireshark before 0.99.6 allows remote attackers to cause a denial of service (crash) via a crafted chunked encoding in a... |
| CVE-2007-3390 | — | — | 2.0% | Jun 26, 2007 | Wireshark 0.99.5 and 0.10.x up to 0.10.14, when running on certain systems, allows remote attackers to cause a denial of... |
| CVE-2007-3391 | — | — | 2.3% | Jun 26, 2007 | Wireshark 0.99.5 allows remote attackers to cause a denial of service (memory consumption) via a malformed DCP ETSI pack... |
| CVE-2007-3377 | — | — | 2.0% | Jun 25, 2007 | Header.pm in Net::DNS before 0.60, a Perl module, (1) generates predictable sequence IDs with a fixed increment and (2) ... |
| CVE-2007-3375 | — | — | 4.7% | Jun 25, 2007 | Stack-based buffer overflow in Lhaca File Archiver before 1.21 allows user-assisted remote attackers to execute arbitrar... |
| CVE-2007-3376 | — | — | 5.5% | Jun 25, 2007 | Buffer overflow in Apple Safari 3.0.2 on Windows XP SP2 allows user-assisted remote attackers to cause a denial of servi... |
| CVE-2007-3374 | — | — | 0.5% | Jun 25, 2007 | Buffer overflow in cluster/cman/daemon/daemon.c in cman (redhat-cluster-suite) before 20070622 allows local users to cau... |
| CVE-2007-2399 | — | — | 7.3% | Jun 25, 2007 | WebKit in Apple Mac OS X 10.3.9, 10.4.9 and later, and iPhone before 1.0.1 performs an "invalid type conversion", which ... |
| CVE-2007-3373 | — | — | 1.0% | Jun 25, 2007 | daemon.c in cman (redhat-cluster-suite) before 20070622 does not clear a buffer for reading requests, which might allow ... |
| CVE-2007-2400 | — | — | 2.6% | Jun 25, 2007 | Race condition in Apple Safari 3 Beta before 3.0.2 on Mac OS X, Windows XP, Windows Vista, and iPhone before 1.0.1, allo... |
| CVE-2007-2401 | — | — | 7.1% | Jun 25, 2007 | CRLF injection vulnerability in WebCore in Apple Mac OS X 10.3.9, 10.4.9 and later, and iPhone before 1.0.1, allows remo... |
| CVE-2007-3372 | — | — | 0.4% | Jun 22, 2007 | The Avahi daemon in Avahi before 0.6.20 allows attackers to cause a denial of service (exit) via empty TXT data over D-B... |
| CVE-2007-3337 | — | — | 0.4% | Jun 22, 2007 | wakeup in Ingres database server 2006 9.0.4, r3, 2.6, and 2.5, as used in multiple CA (Computer Associates) products, al... |
| CVE-2007-3361 | — | — | 1.9% | Jun 22, 2007 | The Nortel PC Client SIP Soft Phone 4.1 3.5.208[20051015] allows remote attackers to cause a denial of service (device c... |
| CVE-2007-3352 | — | — | 1.3% | Jun 22, 2007 | Cross-site scripting (XSS) vulnerability in the preview form in Stephen Ostermiller Contact Form before 2.00.02 allows r... |
| CVE-2007-3351 | — | — | 1.6% | Jun 22, 2007 | The SJPhone SIP soft phone 1.60.303c, when installed on the Dell Axim X3 running Windows Mobile 2003, allows remote atta... |
| CVE-2007-3350 | — | — | 1.6% | Jun 22, 2007 | AOL Instant Messenger (AIM) 6.1.32.1 on Windows XP allows remote attackers to cause a denial of service (application han... |
| CVE-2007-3349 | — | — | 1.9% | Jun 22, 2007 | The Aastra 9112i SIP Phone with firmware 1.4.0.1048 and boot version 1.1.0.10 allows remote attackers to (1) cause a den... |
| CVE-2007-3348 | — | — | 1.7% | Jun 22, 2007 | The D-Link DPH-540/DPH-541 phone allows remote attackers to cause a denial of service (device outage) via a malformed SD... |
| CVE-2007-3347 | — | — | 1.3% | Jun 22, 2007 | The D-Link DPH-540/DPH-541 phone accepts SIP INVITE messages that are not from the Call Server's IP address, which allow... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now