2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-3066 | — | — | 1.8% | Jun 6, 2007 | Multiple PHP remote file inclusion vulnerabilities in php(Reactor) 1.2.7 and earlier allow remote attackers to execute a... |
| CVE-2007-3049 | — | — | 1.5% | Jun 6, 2007 | Cross-site scripting (XSS) vulnerability in index.php in Buttercup web file manager (BWFM) May 2007 allows remote attack... |
| CVE-2007-3050 | — | — | 1.7% | Jun 6, 2007 | Session fixation vulnerability in chameleon cms 3.0 and earlier allows remote attackers to hijack web sessions by settin... |
| CVE-2007-3051 | — | — | 1.2% | Jun 6, 2007 | SQL injection vulnerability in inc/class_users.php in RevokeSoft RevokeBB 1.0 RC4 and earlier allows remote attackers to... |
| CVE-2007-3052 | — | — | 2.5% | Jun 6, 2007 | SQL injection vulnerability in index.php in the PNphpBB2 1.2i and earlier module for PostNuke allows remote attackers to... |
| CVE-2007-3053 | — | — | 1.4% | Jun 6, 2007 | Session fixation vulnerability in Calimero.CMS 3.3.1232 and earlier allows remote attackers to hijack web sessions by se... |
| CVE-2007-3054 | — | — | 1.0% | Jun 6, 2007 | Cross-site scripting (XSS) vulnerability in search.php in Codelib Linker 2.0.4 and earlier allows remote attackers to in... |
| CVE-2007-3055 | — | — | 1.8% | Jun 6, 2007 | Cross-site scripting (XSS) vulnerability in index.php in Codelib Linker 2.0.4 and earlier allows remote attackers to inj... |
| CVE-2007-3056 | — | — | 1.6% | Jun 6, 2007 | Cross-site scripting (XSS) vulnerability in filedetails.php in WebSVN 2.0rc4, and possibly earlier, allows remote attack... |
| CVE-2007-3065 | — | — | 1.0% | Jun 6, 2007 | SQL injection vulnerability in viewimage.php in Particle Soft Particle Gallery 1.0.1 and earlier allows remote attackers... |
| CVE-2007-3064 | — | — | 1.5% | Jun 6, 2007 | Cross-site scripting (XSS) vulnerability in diary.php in My Databook allows remote attackers to inject arbitrary web scr... |
| CVE-2007-3042 | — | — | 1.3% | Jun 5, 2007 | Cross-site scripting (XSS) vulnerability in Meneame before 2 allows remote attackers to inject arbitrary web script or H... |
| CVE-2007-3044 | — | — | 1.7% | Jun 5, 2007 | Unspecified vulnerability in the Map I/O Service (xpwmap) in Hitachi XP/W on HI-UX/WE2 before 20070319, and XP/W on HP-U... |
| CVE-2007-3045 | — | — | 1.4% | Jun 5, 2007 | Unspecified vulnerability in Hitachi TP1/NET/OSI-TP-Extended on HI-UX/WE2 before 20070213, and on HP-UX before 20070314,... |
| CVE-2007-3046 | — | — | 1.6% | Jun 5, 2007 | Buffer overflow in Advanced Software Production Line Vortex Library before 1.0.3 allows remote attackers to cause a deni... |
| CVE-2007-3047 | — | — | 2.2% | Jun 5, 2007 | The Vonage VoIP Telephone Adapter has a default administrator username "user" and password "user," which allows remote a... |
| CVE-2007-3048 | — | — | 0.7% | Jun 5, 2007 | GNU screen 4.0.3 allows local users to unlock the screen via a CTRL-C sequence at the password prompt. NOTE: multiple t... |
| CVE-2007-3043 | — | — | 1.2% | Jun 5, 2007 | Cross-site scripting (XSS) vulnerability in Collaboration - File Sharing 01-20 up to 01-20-/B and 01-30 up to 01-30-/B i... |
| CVE-2007-0933 | — | — | 27.5% | Jun 5, 2007 | Buffer overflow in the wireless driver 6.0.0.18 for D-Link DWL-G650+ (Rev. A1) on Windows XP allows remote attackers to ... |
| CVE-2007-3022 | — | — | 2.1% | Jun 5, 2007 | Symantec Reporting Server 1.0.197.0, and other versions before 1.0.224.0, as used in Symantec Client Security 3.1 and la... |
| CVE-2007-0993 | — | — | — | Jun 5, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-0933. Reason: This candidate is a duplicate of... |
| CVE-2007-3021 | — | — | 2.0% | Jun 5, 2007 | Symantec Reporting Server 1.0.197.0, and other versions before 1.0.224.0, as used in Symantec Client Security 3.1 and la... |
| CVE-2007-1862 | — | — | 5.3% | Jun 4, 2007 | The recall_headers function in mod_mem_cache in Apache 2.2.4 does not properly copy all levels of header data, which can... |
| CVE-2007-2994 | — | — | 1.2% | Jun 4, 2007 | SQL injection vulnerability in news.php in DGNews 2.1 allows remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2007-2387 | — | — | 2.9% | Jun 4, 2007 | Apple Xserve Lights-Out Management before Firmware Update 1.0 on Intel hardware does not require a password for remote a... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now