2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-6603Hot or Not Clone has insufficient access control for producing and reading database backups, which allows remote attacke...
CVE-2007-6604Multiple directory traversal vulnerabilities in index.php in XCMS 1.82 and earlier allow remote attackers to read arbitr...
CVE-2007-6605Buffer overflow in a certain ActiveX control in SkyFexClient.ocx 1.0.2.77 in SkyFex Client 1.0 allows remote attackers t...
CVE-2007-6606OpenBiblio 0.5.2-pre4 and earlier allows remote attackers to obtain configuration information via a direct request to ph...
CVE-2007-6607OpenBiblio 0.5.2-pre4 and earlier allows remote attackers to obtain sensitive information via a direct request for (1) s...
CVE-2007-6608Multiple cross-site scripting (XSS) vulnerabilities in OpenBiblio 0.5.2-pre4 and earlier allow remote attackers to injec...
CVE-2007-6609Multiple stack-based buffer overflows in the CPLI_ReadTag_OGG function in CPI_PlaylistItem.c in CoolPlayer 217 and earli...
CVE-2007-6595ClamAV 0.92 allows local users to overwrite arbitrary files via a symlink attack on (1) temporary files used by the cli_...
CVE-2007-6596ClamAV 0.92 does not recognize Base64 UUEncoded archives, which allows remote attackers to bypass the scanner via a Base...
CVE-2007-6597Multiple cross-site scripting (XSS) vulnerabilities in IPortalX before Build 033 allow remote attackers to inject arbitr...
CVE-2007-6337Unspecified vulnerability in the bzip2 decompression algorithm in nsis/bzlib_private.h in ClamAV before 0.92 has unknown...
CVE-2007-6592Apple Safari 2, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, regard...
CVE-2007-6593Multiple stack-based buffer overflows in l123sr.dll in Autonomy (formerly Verity) KeyView SDK, as used by IBM Lotus Note...
CVE-2007-6594IBM Lotus Notes 8 for Linux before 8.0.1 uses (1) unspecified weak permissions for the installation kit obtained through...
CVE-2007-6590Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-2809. Reason: This candidate is a duplicate of...
CVE-2007-6565Multiple SQL injection vulnerabilities in Blakord Portal 1.3.A Beta and earlier allow remote attackers to execute arbitr...
CVE-2007-6566SQL injection vulnerability in post.php in XZero Community Classifieds 4.95.11 and earlier allows remote attackers to ex...
CVE-2007-6567Directory traversal vulnerability in index.php in XZero Community Classifieds 4.95.11 and earlier allows remote attacker...
CVE-2007-6568PHP remote file inclusion vulnerability in config.inc.php in XZero Community Classifieds 4.95.11 and earlier allows remo...
CVE-2007-6569Cross-site scripting (XSS) vulnerability in the View Error Log functionality in Sun Java System Web Proxy Server 4.x bef...
CVE-2007-6570Cross-site scripting (XSS) vulnerability in the View URL Database functionality in Sun Java System Web Proxy Server 4.x ...
CVE-2007-6571Cross-site scripting (XSS) vulnerability in Sun Java System Web Proxy Server 3.6 before SP11 on Windows allows remote at...
CVE-2007-6572Cross-site scripting (XSS) vulnerability in Sun Java System Web Server 6.1 before SP8 and 7.0 before Update 1 allows rem...
CVE-2007-6573QK SMTP Server 3 allows remote attackers to cause a denial of service (daemon crash) via a long (1) HELO, (2) MAIL FROM,...
CVE-2007-6574Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.4 and earlier allow remote attackers to inject arbitra...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now