2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-2844 | — | — | 2.9% | May 24, 2007 | PHP 4.x and 5.x before 5.2.1, when running on multi-threaded systems, does not ensure thread safety for libc crypt funct... |
| CVE-2007-0448 | — | — | 7.1% | May 24, 2007 | The fopen function in PHP 5.2.0 does not properly handle invalid URI handlers, which allows context-dependent attackers ... |
| CVE-2007-2849 | — | — | 2.7% | May 24, 2007 | KnowledgeTree Document Management (aka KnowledgeTree Open Source) before STABLE 3.3.7 does not require a password for an... |
| CVE-2007-2850 | — | — | 2.8% | May 24, 2007 | The Session Reliability Service (XTE) in Citrix MetaFrame Presentation Server 3.0, Presentation Server 4.0, and Access E... |
| CVE-2007-2847 | — | — | 1.8% | May 24, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in hlstats.php in HLstats 1.35, and possibly earlier, allow remote a... |
| CVE-2007-2843 | — | — | 3.5% | May 24, 2007 | Cross-domain vulnerability in Apple Safari 2.0.4 allows remote attackers to access restricted information from other dom... |
| CVE-2007-2851 | — | — | 2.4% | May 24, 2007 | A certain ActiveX control in LeadTools Raster Variant Object Library (LTRVR14e.dll) 14.5.0.44 allows remote attackers to... |
| CVE-2007-2846 | — | — | 7.7% | May 24, 2007 | Heap-based buffer overflow in the SIS unpacker in avast! Anti-Virus Managed Client before 4.7.700 allows user-assisted r... |
| CVE-2007-2831 | — | — | 3.5% | May 24, 2007 | Array index error in the (1) ieee80211_ioctl_getwmmparams and (2) ieee80211_ioctl_setwmmparams functions in net80211/iee... |
| CVE-2007-2830 | — | — | 2.3% | May 24, 2007 | The ath_beacon_config function in if_ath.c in MadWifi before 0.9.3.1 allows remote attackers to cause a denial of servic... |
| CVE-2007-2829 | — | — | 3.3% | May 24, 2007 | The 802.11 network stack in net80211/ieee80211_input.c in MadWifi before 0.9.3.1 allows remote attackers to cause a deni... |
| CVE-2007-2687 | — | — | 5.5% | May 24, 2007 | Stack-based buffer overflow in the MicroWorld Agent service (MWAGENT.EXE) in MicroWorld Technologies eScan before 9.0.71... |
| CVE-2007-2832 | — | — | 6.5% | May 24, 2007 | Cross-site scripting (XSS) vulnerability in the web application firewall in Cisco CallManager before 3.3(5)sr3, 4.1 befo... |
| CVE-2007-2799 | — | — | 2.7% | May 23, 2007 | Integer overflow in the "file" program 4.20, when running on 32-bit systems, as used in products including The Sleuth Ki... |
| CVE-2007-2827 | — | — | 6.4% | May 22, 2007 | Heap-based buffer overflow in LEAD Technologies LEADTOOLS ISIS ActiveX Control (ltisi14E.ocx) 14.5.0.44 and earlier allo... |
| CVE-2007-2826 | — | — | 3.3% | May 22, 2007 | PHP remote file inclusion vulnerability in lib/addressbook.php in Madirish Webmail 2.0 allows remote attackers to execut... |
| CVE-2007-2825 | — | — | 1.2% | May 22, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in ReadMsg.php in @Mail 5.02 and earlier allow remote attackers to i... |
| CVE-2007-2824 | — | — | 1.8% | May 22, 2007 | SQL injection vulnerability in paypal.php in AlstraSoft E-Friends 4.21 and earlier allows remote attackers to execute ar... |
| CVE-2007-2823 | — | — | 2.9% | May 22, 2007 | Multiple buffer overflows in HT Editor before 2.0.6 might allow remote attackers to execute arbitrary code via unspecifi... |
| CVE-2007-2822 | — | — | 4.4% | May 22, 2007 | TutorialCMS 1.01 and earlier, when register_globals is enabled, allows remote attackers to bypass authentication via the... |
| CVE-2007-2821 | — | — | 5.2% | May 22, 2007 | SQL injection vulnerability in wp-admin/admin-ajax.php in WordPress before 2.2 allows remote attackers to execute arbitr... |
| CVE-2007-2820 | — | — | 5.8% | May 22, 2007 | Multiple stack-based buffer overflows in the KSign KSignSWAT ActiveX Control (AxKSignSWAT.dll) 2.0.3.3 allow remote atta... |
| CVE-2007-2819 | — | — | 1.2% | May 22, 2007 | Cross-site scripting (XSS) vulnerability in reportItem.do in Track+ 3.3.2 and earlier allows remote attackers to inject ... |
| CVE-2007-2818 | — | — | 1.2% | May 22, 2007 | Cross-site scripting (XSS) vulnerability in cand_login.asp in CactuSoft Parodia 6.4 and earlier allows remote attackers ... |
| CVE-2007-2817 | — | — | 1.1% | May 22, 2007 | SQL injection vulnerability in read/index.php in ol'bookmarks 0.7.4 allows remote attackers to execute arbitrary SQL com... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now