2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-2860 | — | — | 1.1% | May 24, 2007 | user.php in BoastMachine 3.0 platinum allows remote authenticated users to gain privileges via a modified id parameter, ... |
| CVE-2007-2861 | — | — | 1.7% | May 24, 2007 | Multiple PHP remote file inclusion vulnerabilities in Simple Accessible XHTML Online News (SAXON) 4.6 allow remote attac... |
| CVE-2007-2862 | — | — | 1.1% | May 24, 2007 | Multiple SQL injection vulnerabilities in CubeCart 3.0.16 might allow remote attackers to execute arbitrary SQL commands... |
| CVE-2007-2858 | — | — | 0.9% | May 24, 2007 | SQL injection vulnerability in the IP-Search functionality in the IP-Tracking Mod for phpBB 2.0.x allows remote authenti... |
| CVE-2007-2857 | — | — | 3.1% | May 24, 2007 | PHP remote file inclusion vulnerability in sample/xls2mysql in ABC Excel Parser Pro 4.0 allows remote attackers to execu... |
| CVE-2007-2851 | — | — | 2.4% | May 24, 2007 | A certain ActiveX control in LeadTools Raster Variant Object Library (LTRVR14e.dll) 14.5.0.44 allows remote attackers to... |
| CVE-2007-2850 | — | — | 2.8% | May 24, 2007 | The Session Reliability Service (XTE) in Citrix MetaFrame Presentation Server 3.0, Presentation Server 4.0, and Access E... |
| CVE-2007-2849 | — | — | 2.7% | May 24, 2007 | KnowledgeTree Document Management (aka KnowledgeTree Open Source) before STABLE 3.3.7 does not require a password for an... |
| CVE-2007-2848 | — | — | 4.6% | May 24, 2007 | Stack-based buffer overflow in the SetPath function in the shComboBox ActiveX control (shcmb80.ocx) in Sky Software Shel... |
| CVE-2007-2847 | — | — | 1.8% | May 24, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in hlstats.php in HLstats 1.35, and possibly earlier, allow remote a... |
| CVE-2007-2844 | — | — | 2.9% | May 24, 2007 | PHP 4.x and 5.x before 5.2.1, when running on multi-threaded systems, does not ensure thread safety for libc crypt funct... |
| CVE-2007-2843 | — | — | 3.5% | May 24, 2007 | Cross-domain vulnerability in Apple Safari 2.0.4 allows remote attackers to access restricted information from other dom... |
| CVE-2007-2845 | — | — | 6.3% | May 24, 2007 | Heap-based buffer overflow in the CAB unpacker in avast! Anti-Virus Managed Client before 4.7.700 allows user-assisted r... |
| CVE-2007-2846 | — | — | 7.7% | May 24, 2007 | Heap-based buffer overflow in the SIS unpacker in avast! Anti-Virus Managed Client before 4.7.700 allows user-assisted r... |
| CVE-2007-0448 | — | — | 7.1% | May 24, 2007 | The fopen function in PHP 5.2.0 does not properly handle invalid URI handlers, which allows context-dependent attackers ... |
| CVE-2007-2687 | — | — | 5.5% | May 24, 2007 | Stack-based buffer overflow in the MicroWorld Agent service (MWAGENT.EXE) in MicroWorld Technologies eScan before 9.0.71... |
| CVE-2007-2832 | — | — | 6.5% | May 24, 2007 | Cross-site scripting (XSS) vulnerability in the web application firewall in Cisco CallManager before 3.3(5)sr3, 4.1 befo... |
| CVE-2007-2831 | — | — | 3.5% | May 24, 2007 | Array index error in the (1) ieee80211_ioctl_getwmmparams and (2) ieee80211_ioctl_setwmmparams functions in net80211/iee... |
| CVE-2007-2830 | — | — | 2.3% | May 24, 2007 | The ath_beacon_config function in if_ath.c in MadWifi before 0.9.3.1 allows remote attackers to cause a denial of servic... |
| CVE-2007-2829 | — | — | 3.3% | May 24, 2007 | The 802.11 network stack in net80211/ieee80211_input.c in MadWifi before 0.9.3.1 allows remote attackers to cause a deni... |
| CVE-2007-2799 | — | — | 2.7% | May 23, 2007 | Integer overflow in the "file" program 4.20, when running on 32-bit systems, as used in products including The Sleuth Ki... |
| CVE-2007-2818 | — | — | 1.2% | May 22, 2007 | Cross-site scripting (XSS) vulnerability in cand_login.asp in CactuSoft Parodia 6.4 and earlier allows remote attackers ... |
| CVE-2007-2816 | — | — | 10.1% | May 22, 2007 | Multiple PHP remote file inclusion vulnerabilities in ol'bookmarks 0.7.4 allow remote attackers to execute arbitrary PHP... |
| CVE-2007-2817 | — | — | 1.1% | May 22, 2007 | SQL injection vulnerability in read/index.php in ol'bookmarks 0.7.4 allows remote attackers to execute arbitrary SQL com... |
| CVE-2007-2819 | — | — | 1.2% | May 22, 2007 | Cross-site scripting (XSS) vulnerability in reportItem.do in Track+ 3.3.2 and earlier allows remote attackers to inject ... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now