2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-2985 | — | — | 4.2% | Jun 1, 2007 | Pheap 2.0 allows remote attackers to bypass authentication by setting a pheap_login cookie value to the administrator's ... |
| CVE-2007-2984 | — | — | 3.4% | Jun 1, 2007 | Multiple stack-based buffer overflows in the Media Technology Group CDPass ActiveX control in CDPass.dll allow remote at... |
| CVE-2007-2990 | — | — | 0.4% | Jun 1, 2007 | Unspecified vulnerability in inetd in Sun Solaris 10 before 20070529 allows local users to cause a denial of service (da... |
| CVE-2007-2989 | — | — | 3.4% | Jun 1, 2007 | The libike library in Sun Solaris 9 before 20070529 contains a logic error related to a certain pointer, which allows re... |
| CVE-2007-2988 | — | — | 7.7% | Jun 1, 2007 | A certain admin script in Inout Meta Search Engine sends a redirect to the web browser but does not exit when administra... |
| CVE-2007-2982 | — | — | 5.2% | Jun 1, 2007 | Multiple buffer overflows in the British Telecommunications Business Connect webhelper ActiveX control before 1.0.0.7 in... |
| CVE-2007-2981 | — | — | 6.4% | Jun 1, 2007 | Buffer overflow in a certain ActiveX control in LEAD Technologies LEADTOOLS Raster OCR Document Object Library (ltrdc14e... |
| CVE-2007-2979 | — | — | 1.7% | Jun 1, 2007 | Techno Dreams Web Directory / Search Engine 2.0 stores sensitive information under the web root with insufficient access... |
| CVE-2007-2980 | — | — | 4.7% | Jun 1, 2007 | Heap-based buffer overflow in a certain ActiveX control in LEADTOOLS LEAD Raster ISIS Object (LTRIS14e.DLL) 14.5.0.44 al... |
| CVE-2007-2978 | — | — | 1.5% | Jun 1, 2007 | Session fixation vulnerability in eggblog 3.1.0 and earlier allows remote attackers to hijack web sessions by setting th... |
| CVE-2007-2977 | — | — | 1.9% | Jun 1, 2007 | Buffer overflow in the receive function in submit/submitcommon.c in the submit daemon in DOMjudge before 2.0.0RC1 allows... |
| CVE-2007-2976 | — | — | 1.0% | Jun 1, 2007 | Centrinity FirstClass 8.3 and earlier, and Server and Internet Services 8.0 and earlier, do not properly handle a URL wi... |
| CVE-2007-2975 | — | — | 2.5% | Jun 1, 2007 | The admin console in Ignite Realtime Openfire 3.3.0 and earlier (formerly Wildfire) does not properly specify a filter m... |
| CVE-2007-2974 | — | — | 7.5% | Jun 1, 2007 | Buffer overflow in the file parsing engine in Avira Antivir Antivirus before 7.03.00.09 allows remote attackers to execu... |
| CVE-2007-2973 | — | — | 3.4% | Jun 1, 2007 | Avira Antivir Antivirus before 7.03.00.09 allows remote attackers to cause a denial of service (infinite loop and CPU co... |
| CVE-2007-2971 | — | — | 2.0% | Jun 1, 2007 | SQL injection vulnerability in getnewsitem.php in gCards 1.46 and earlier allows remote attackers to execute arbitrary S... |
| CVE-2007-2918 | — | — | 34.1% | Jun 1, 2007 | Multiple stack-based buffer overflows in ActiveX controls (1) VibeC in (a) vibecontrol.dll, (2) CallManager and (3) View... |
| CVE-2007-2969 | — | — | 61.7% | Jun 1, 2007 | PHP remote file inclusion vulnerability in newsletter.php in WAnewsletter 2.1.3 and earlier allows remote attackers to e... |
| CVE-2007-2970 | — | — | 1.0% | Jun 1, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in cgi/block.cgi in 8e6 R3000 Internet Filter allow remote attackers... |
| CVE-2007-2972 | — | — | 3.4% | Jun 1, 2007 | The file parsing engine in Avira Antivir Antivirus before 7.04.00.24 allows remote attackers to cause a denial of servic... |
| CVE-2007-2968 | — | — | 1.2% | Jun 1, 2007 | Cross-site scripting (XSS) vulnerability in register.php in cpCommerce 1.1.0 and earlier allows remote attackers to inje... |
| CVE-2007-2917 | — | — | 6.6% | Jun 1, 2007 | Multiple buffer overflows in a certain ActiveX control in odapi.dll in Authentium Command Antivirus before 4.93.8 allow ... |
| CVE-2007-1362 | — | — | 7.8% | Jun 1, 2007 | Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and SeaMonkey 1.0.9 and 1.1.2, allows remote attackers to ... |
| CVE-2007-0328 | — | — | 5.3% | Jun 1, 2007 | The DWUpdateService ActiveX control in the agent (agent.exe) in Macrovision FLEXnet Connect 6.0 and Update Service 3.x t... |
| CVE-2007-2871 | — | — | 2.5% | Jun 1, 2007 | Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and SeaMonkey 1.0.9 and 1.1.2, allows remote attackers to ... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now