2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-3066Multiple PHP remote file inclusion vulnerabilities in php(Reactor) 1.2.7 and earlier allow remote attackers to execute a...
CVE-2007-3065SQL injection vulnerability in viewimage.php in Particle Soft Particle Gallery 1.0.1 and earlier allows remote attackers...
CVE-2007-3064Cross-site scripting (XSS) vulnerability in diary.php in My Databook allows remote attackers to inject arbitrary web scr...
CVE-2007-3063SQL injection vulnerability in diary.php in My Databook allows remote attackers to execute arbitrary SQL commands via th...
CVE-2007-3062Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 2.1.2 running on Linux and Window...
CVE-2007-3061Cactushop 6 and earlier stores sensitive information under the web root with insufficient access control, which allows r...
CVE-2007-3060Multiple cross-site scripting (XSS) vulnerabilities in PHP Live! 3.2.2 allow remote attackers to inject arbitrary web sc...
CVE-2007-3059SendCard 3.3.0 allows remote attackers to obtain sensitive information via an invalid sc_language parameter to sendcard....
CVE-2007-3058Multiple PHP remote file inclusion vulnerabilities in Madirish Webmail 2.0 allow remote attackers to execute arbitrary P...
CVE-2007-3057PHP remote file inclusion vulnerability in include/wysiwyg/spaw_control.class.php in the icontent 4.5 module for XOOPS a...
CVE-2007-3056Cross-site scripting (XSS) vulnerability in filedetails.php in WebSVN 2.0rc4, and possibly earlier, allows remote attack...
CVE-2007-3055Cross-site scripting (XSS) vulnerability in index.php in Codelib Linker 2.0.4 and earlier allows remote attackers to inj...
CVE-2007-3054Cross-site scripting (XSS) vulnerability in search.php in Codelib Linker 2.0.4 and earlier allows remote attackers to in...
CVE-2007-3053Session fixation vulnerability in Calimero.CMS 3.3.1232 and earlier allows remote attackers to hijack web sessions by se...
CVE-2007-3052SQL injection vulnerability in index.php in the PNphpBB2 1.2i and earlier module for PostNuke allows remote attackers to...
CVE-2007-3051SQL injection vulnerability in inc/class_users.php in RevokeSoft RevokeBB 1.0 RC4 and earlier allows remote attackers to...
CVE-2007-3050Session fixation vulnerability in chameleon cms 3.0 and earlier allows remote attackers to hijack web sessions by settin...
CVE-2007-3049Cross-site scripting (XSS) vulnerability in index.php in Buttercup web file manager (BWFM) May 2007 allows remote attack...
CVE-2007-3042Cross-site scripting (XSS) vulnerability in Meneame before 2 allows remote attackers to inject arbitrary web script or H...
CVE-2007-3043Cross-site scripting (XSS) vulnerability in Collaboration - File Sharing 01-20 up to 01-20-/B and 01-30 up to 01-30-/B i...
CVE-2007-3044Unspecified vulnerability in the Map I/O Service (xpwmap) in Hitachi XP/W on HI-UX/WE2 before 20070319, and XP/W on HP-U...
CVE-2007-3045Unspecified vulnerability in Hitachi TP1/NET/OSI-TP-Extended on HI-UX/WE2 before 20070213, and on HP-UX before 20070314,...
CVE-2007-3046Buffer overflow in Advanced Software Production Line Vortex Library before 1.0.3 allows remote attackers to cause a deni...
CVE-2007-3047The Vonage VoIP Telephone Adapter has a default administrator username "user" and password "user," which allows remote a...
CVE-2007-3048GNU screen 4.0.3 allows local users to unlock the screen via a CTRL-C sequence at the password prompt. NOTE: multiple t...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now