2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-6603——Hot or Not Clone has insufficient access control for producing and reading database backups, which allows remote attacke...
CVE-2007-6604——Multiple directory traversal vulnerabilities in index.php in XCMS 1.82 and earlier allow remote attackers to read arbitr...
CVE-2007-6605——Buffer overflow in a certain ActiveX control in SkyFexClient.ocx 1.0.2.77 in SkyFex Client 1.0 allows remote attackers t...
CVE-2007-6606——OpenBiblio 0.5.2-pre4 and earlier allows remote attackers to obtain configuration information via a direct request to ph...
CVE-2007-6607——OpenBiblio 0.5.2-pre4 and earlier allows remote attackers to obtain sensitive information via a direct request for (1) s...
CVE-2007-6608——Multiple cross-site scripting (XSS) vulnerabilities in OpenBiblio 0.5.2-pre4 and earlier allow remote attackers to injec...
CVE-2007-6609——Multiple stack-based buffer overflows in the CPLI_ReadTag_OGG function in CPI_PlaylistItem.c in CoolPlayer 217 and earli...
CVE-2007-6595——ClamAV 0.92 allows local users to overwrite arbitrary files via a symlink attack on (1) temporary files used by the cli_...
CVE-2007-6596——ClamAV 0.92 does not recognize Base64 UUEncoded archives, which allows remote attackers to bypass the scanner via a Base...
CVE-2007-6597——Multiple cross-site scripting (XSS) vulnerabilities in IPortalX before Build 033 allow remote attackers to inject arbitr...
CVE-2007-6337——Unspecified vulnerability in the bzip2 decompression algorithm in nsis/bzlib_private.h in ClamAV before 0.92 has unknown...
CVE-2007-6592——Apple Safari 2, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, regard...
CVE-2007-6593——Multiple stack-based buffer overflows in l123sr.dll in Autonomy (formerly Verity) KeyView SDK, as used by IBM Lotus Note...
CVE-2007-6594——IBM Lotus Notes 8 for Linux before 8.0.1 uses (1) unspecified weak permissions for the installation kit obtained through...
CVE-2007-6590——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-2809. Reason: This candidate is a duplicate of...
CVE-2007-6565——Multiple SQL injection vulnerabilities in Blakord Portal 1.3.A Beta and earlier allow remote attackers to execute arbitr...
CVE-2007-6566——SQL injection vulnerability in post.php in XZero Community Classifieds 4.95.11 and earlier allows remote attackers to ex...
CVE-2007-6567——Directory traversal vulnerability in index.php in XZero Community Classifieds 4.95.11 and earlier allows remote attacker...
CVE-2007-6568——PHP remote file inclusion vulnerability in config.inc.php in XZero Community Classifieds 4.95.11 and earlier allows remo...
CVE-2007-6569——Cross-site scripting (XSS) vulnerability in the View Error Log functionality in Sun Java System Web Proxy Server 4.x bef...
CVE-2007-6570——Cross-site scripting (XSS) vulnerability in the View URL Database functionality in Sun Java System Web Proxy Server 4.x ...
CVE-2007-6571——Cross-site scripting (XSS) vulnerability in Sun Java System Web Proxy Server 3.6 before SP11 on Windows allows remote at...
CVE-2007-6572——Cross-site scripting (XSS) vulnerability in Sun Java System Web Server 6.1 before SP8 and 7.0 before Update 1 allows rem...
CVE-2007-6573——QK SMTP Server 3 allows remote attackers to cause a denial of service (daemon crash) via a long (1) HELO, (2) MAIL FROM,...
CVE-2007-6574——Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.4 and earlier allow remote attackers to inject arbitra...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now