2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-2828 | — | — | 1.5% | May 22, 2007 | Cross-site request forgery (CSRF) vulnerability in adsense-deluxe.php in the AdSense-Deluxe 0.x plugin for WordPress all... |
| CVE-2007-2816 | — | — | 10.1% | May 22, 2007 | Multiple PHP remote file inclusion vulnerabilities in ol'bookmarks 0.7.4 allow remote attackers to execute arbitrary PHP... |
| CVE-2007-2815 | — | — | 73.4% | May 22, 2007 | The "hit-highlighting" functionality in webhits.dll in Microsoft Internet Information Services (IIS) Web Server 5.0 only... |
| CVE-2007-2686 | — | — | 1.8% | May 22, 2007 | Cross-site scripting (XSS) vulnerability in index.php in Jetbox CMS 2.1 allows remote attackers to inject arbitrary web ... |
| CVE-2007-2814 | — | — | 5.5% | May 22, 2007 | Multiple stack-based buffer overflows in the Pegasus ImagN' ActiveX control (IMW32O40.OCX) 4.00.041 allow remote attacke... |
| CVE-2007-2813 | — | — | 3.4% | May 22, 2007 | Cisco IOS 12.4 and earlier, when using the crypto packages and SSL support is enabled, allows remote attackers to cause ... |
| CVE-2007-2812 | — | — | 2.7% | May 22, 2007 | Cross-site scripting (XSS) vulnerability in hlstats.php in HLstats 1.35, and possibly earlier, allows remote attackers t... |
| CVE-2007-2811 | — | — | 1.3% | May 22, 2007 | Cross-site scripting (XSS) vulnerability in OSK Advance-Flow 4.41 and earlier allows remote attackers to inject arbitrar... |
| CVE-2007-2810 | — | — | 1.5% | May 22, 2007 | SQL injection vulnerability in down_indir.asp in Gazi Download Portal allows remote attackers to execute arbitrary SQL c... |
| CVE-2007-2809 | — | — | 6.3% | May 22, 2007 | Buffer overflow in the transfer manager in Opera before 9.21 for Windows allows user-assisted remote attackers to execut... |
| CVE-2007-2808 | — | — | 1.3% | May 22, 2007 | Cross-site scripting (XSS) vulnerability in gnatsweb.pl in Gnatsweb 4.00 and Gnats 4.1.99 allows remote attackers to inj... |
| CVE-2007-2807 | — | — | 10.0% | May 22, 2007 | Stack-based buffer overflow in mod/server.mod/servrmsg.c in Eggdrop 1.6.18, and possibly earlier, allows user-assisted, ... |
| CVE-2007-2806 | — | — | 1.6% | May 22, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in GaliX 2.0 allow remote attackers to inject arbitrary... |
| CVE-2007-2805 | — | — | 1.5% | May 22, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in ClientExec (CE) 3.0 beta2, and possibly other versio... |
| CVE-2007-2804 | — | — | 1.2% | May 22, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in scripts/prodList.asp in CandyPress Store 3.5.2.14 and earlier all... |
| CVE-2007-2803 | — | — | 1.2% | May 22, 2007 | SQL injection vulnerability in default.asp in Vizayn Urun Tanitim Sitesi 0.2 allows remote attackers to execute arbitrar... |
| CVE-2007-2802 | — | — | 1.1% | May 22, 2007 | Cross-site scripting (XSS) vulnerability in cp/ps/Main/login/Login in RM EasyMail Plus allows remote attackers to inject... |
| CVE-2007-2519 | — | — | 7.3% | May 22, 2007 | Directory traversal vulnerability in the installer in PEAR 1.0 through 1.5.3 allows user-assisted remote attackers to ov... |
| CVE-2007-2791 | — | — | 6.5% | May 22, 2007 | Unspecified vulnerability in the Secure Shell (SSH) in HP Tru64 UNIX 5.1B-4 and 5.1B-3 allows remote attackers to identi... |
| CVE-2007-2790 | — | — | 1.7% | May 22, 2007 | Cross-site scripting (XSS) vulnerability in shopcontent.asp in VP-ASP Shopping Cart 6.50, and possibly earlier, allows r... |
| CVE-2007-2789 | — | — | 3.5% | May 22, 2007 | The BMP image parser in Sun Java Development Kit (JDK) before 1.5.0_11-b03 and 1.6.x before 1.6.0_01-b06, and Sun Java R... |
| CVE-2007-2788 | — | — | 18.2% | May 22, 2007 | Integer overflow in the embedded ICC profile image parser in Sun Java Development Kit (JDK) before 1.5.0_11-b03 and 1.6.... |
| CVE-2007-2793 | — | — | 64.5% | May 22, 2007 | PHP remote file inclusion vulnerability in ImageImageMagick.php in Geeklog 2.x allows remote attackers to execute arbitr... |
| CVE-2007-2792 | — | — | 3.8% | May 22, 2007 | SQL injection vulnerability in the Yet another Newsletter Component (aka YaNC or com_yanc) component before 1.5 beta 3 f... |
| CVE-2007-2786 | — | — | 1.7% | May 21, 2007 | Ratbox IRC Daemon (aka ircd-ratbox) 2.2.5 and earlier allows remote attackers to cause a denial of service (resource exh... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now