2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-6603 | — | — | 2.9% | Dec 31, 2007 | Hot or Not Clone has insufficient access control for producing and reading database backups, which allows remote attacke... |
| CVE-2007-6604 | — | — | 3.6% | Dec 31, 2007 | Multiple directory traversal vulnerabilities in index.php in XCMS 1.82 and earlier allow remote attackers to read arbitr... |
| CVE-2007-6605 | — | — | 3.7% | Dec 31, 2007 | Buffer overflow in a certain ActiveX control in SkyFexClient.ocx 1.0.2.77 in SkyFex Client 1.0 allows remote attackers t... |
| CVE-2007-6606 | — | — | 1.8% | Dec 31, 2007 | OpenBiblio 0.5.2-pre4 and earlier allows remote attackers to obtain configuration information via a direct request to ph... |
| CVE-2007-6607 | — | — | 2.2% | Dec 31, 2007 | OpenBiblio 0.5.2-pre4 and earlier allows remote attackers to obtain sensitive information via a direct request for (1) s... |
| CVE-2007-6608 | — | — | 4.6% | Dec 31, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in OpenBiblio 0.5.2-pre4 and earlier allow remote attackers to injec... |
| CVE-2007-6609 | — | — | 5.2% | Dec 31, 2007 | Multiple stack-based buffer overflows in the CPLI_ReadTag_OGG function in CPI_PlaylistItem.c in CoolPlayer 217 and earli... |
| CVE-2007-6595 | — | — | 0.4% | Dec 31, 2007 | ClamAV 0.92 allows local users to overwrite arbitrary files via a symlink attack on (1) temporary files used by the cli_... |
| CVE-2007-6596 | — | — | 2.3% | Dec 31, 2007 | ClamAV 0.92 does not recognize Base64 UUEncoded archives, which allows remote attackers to bypass the scanner via a Base... |
| CVE-2007-6597 | — | — | 2.2% | Dec 31, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in IPortalX before Build 033 allow remote attackers to inject arbitr... |
| CVE-2007-6337 | — | — | 2.8% | Dec 31, 2007 | Unspecified vulnerability in the bzip2 decompression algorithm in nsis/bzlib_private.h in ClamAV before 0.92 has unknown... |
| CVE-2007-6592 | — | — | 0.7% | Dec 28, 2007 | Apple Safari 2, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, regard... |
| CVE-2007-6593 | — | — | 6.3% | Dec 28, 2007 | Multiple stack-based buffer overflows in l123sr.dll in Autonomy (formerly Verity) KeyView SDK, as used by IBM Lotus Note... |
| CVE-2007-6594 | — | — | 0.3% | Dec 28, 2007 | IBM Lotus Notes 8 for Linux before 8.0.1 uses (1) unspecified weak permissions for the installation kit obtained through... |
| CVE-2007-6590 | — | — | — | Dec 28, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-2809. Reason: This candidate is a duplicate of... |
| CVE-2007-6565 | — | — | 2.3% | Dec 28, 2007 | Multiple SQL injection vulnerabilities in Blakord Portal 1.3.A Beta and earlier allow remote attackers to execute arbitr... |
| CVE-2007-6566 | — | — | 2.4% | Dec 28, 2007 | SQL injection vulnerability in post.php in XZero Community Classifieds 4.95.11 and earlier allows remote attackers to ex... |
| CVE-2007-6567 | — | — | 7.0% | Dec 28, 2007 | Directory traversal vulnerability in index.php in XZero Community Classifieds 4.95.11 and earlier allows remote attacker... |
| CVE-2007-6568 | — | — | 2.3% | Dec 28, 2007 | PHP remote file inclusion vulnerability in config.inc.php in XZero Community Classifieds 4.95.11 and earlier allows remo... |
| CVE-2007-6569 | — | — | 1.9% | Dec 28, 2007 | Cross-site scripting (XSS) vulnerability in the View Error Log functionality in Sun Java System Web Proxy Server 4.x bef... |
| CVE-2007-6570 | — | — | 2.2% | Dec 28, 2007 | Cross-site scripting (XSS) vulnerability in the View URL Database functionality in Sun Java System Web Proxy Server 4.x ... |
| CVE-2007-6571 | — | — | 1.7% | Dec 28, 2007 | Cross-site scripting (XSS) vulnerability in Sun Java System Web Proxy Server 3.6 before SP11 on Windows allows remote at... |
| CVE-2007-6572 | — | — | 1.7% | Dec 28, 2007 | Cross-site scripting (XSS) vulnerability in Sun Java System Web Server 6.1 before SP8 and 7.0 before Update 1 allows rem... |
| CVE-2007-6573 | — | — | 1.6% | Dec 28, 2007 | QK SMTP Server 3 allows remote attackers to cause a denial of service (daemon crash) via a long (1) HELO, (2) MAIL FROM,... |
| CVE-2007-6574 | — | — | 1.8% | Dec 28, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.4 and earlier allow remote attackers to inject arbitra... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now