2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-2685 | — | — | 1.2% | May 21, 2007 | Multiple SQL injection vulnerabilities in index.php in Jetbox CMS 2.1 allow remote attackers to execute arbitrary SQL co... |
| CVE-2007-1355 | — | — | 58.2% | May 21, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in the appdev/sample/web/hello.jsp example application in Tomcat 4.0... |
| CVE-2007-2684 | — | — | 1.6% | May 21, 2007 | Jetbox CMS 2.1 allows remote attackers to obtain sensitive information via (1) a direct request to (a) main_page.php, (b... |
| CVE-2007-2769 | — | — | 2.7% | May 21, 2007 | BES before 3.5.0 in OPeNDAP 4 (Hydrax) before 1.2.1 does not properly handle compressed files, which allows remote attac... |
| CVE-2007-2768 | — | — | 8.7% | May 21, 2007 | OpenSSH, when using OPIE (One-Time Passwords in Everything) for PAM, allows remote attackers to determine the existence ... |
| CVE-2007-2759 | — | — | 1.7% | May 18, 2007 | Multiple SQL injection vulnerabilities in the insert function in the ValuePreference class (grid/ed/ValuePreference.java... |
| CVE-2007-2766 | — | — | 0.3% | May 18, 2007 | lib/backup-methods.sh in Backup Manager before 0.7.6 provides the MySQL password as a plaintext command line argument, w... |
| CVE-2007-2765 | — | — | 1.5% | May 18, 2007 | blockhosts.py in BlockHosts before 2.0.3 does not properly parse daemon log files, which allows remote attackers to add ... |
| CVE-2007-2764 | — | — | 2.4% | May 18, 2007 | The embedded Linux kernel in certain Sun-Brocade SilkWorm switches before 20070516 does not properly handle a situation ... |
| CVE-2007-2763 | — | — | 7.8% | May 18, 2007 | Buffer overflow in the UnlockSupport function in the LockModules subsystem in a certain ActiveX control in ltmm15.dll in... |
| CVE-2007-2762 | — | — | 9.7% | May 18, 2007 | Multiple PHP remote file inclusion vulnerabilities in Build it Fast (bif3) 0.4.1 allow remote attackers to execute arbit... |
| CVE-2007-2761 | — | — | 6.1% | May 18, 2007 | Stack-based buffer overflow in MagicISO 5.4 build 239 and earlier allows remote attackers to execute arbitrary code via ... |
| CVE-2007-2760 | — | — | 1.7% | May 18, 2007 | The canUpdate function in model/MRole.java in Adempiere before 3.1.6 does not properly validate user roles, which allows... |
| CVE-2007-2757 | — | — | 4.9% | May 18, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in Redoable 1.2 allow remote attackers to inject arbitrary web scrip... |
| CVE-2007-2758 | — | — | 5.7% | May 18, 2007 | Multiple buffer overflows in WinImage 8.0.8000 allow user-assisted remote attackers to execute arbitrary code via a FAT ... |
| CVE-2007-2756 | — | — | 4.3% | May 18, 2007 | The gdPngReadData function in libgd 2.0.34 allows user-assisted attackers to cause a denial of service (CPU consumption)... |
| CVE-2007-2682 | — | — | 2.6% | May 18, 2007 | The installer for Adobe Version Cue CS3 Server on Apple Mac OS X, as used in Adobe Creative Suite 3 (CS3), does not re-e... |
| CVE-2007-2755 | — | — | 4.4% | May 17, 2007 | The PrecisionID Barcode 1.9 ActiveX control in PrecisionID_Barcode.dll, when Internet Explorer 6 is used, allows remote ... |
| CVE-2007-2754 | — | — | 5.8% | May 17, 2007 | Integer signedness error in truetype/ttgload.c in Freetype 2.3.4 and earlier might allow remote attackers to execute arb... |
| CVE-2007-2746 | — | — | 0.9% | May 17, 2007 | The viewList function in lib/WebGUI/Asset/Wobject/DataForm.pm in Plain Black WebGUI before 7.3.14 does not properly use ... |
| CVE-2007-1693 | — | — | 2.4% | May 17, 2007 | The SIP channel module in Yet Another Telephony Engine (Yate) before 1.2.0 sets the caller_info_uri parameter using an i... |
| CVE-2007-2753 | — | — | 5.2% | May 17, 2007 | RunawaySoft Haber portal 1.0 stores sensitive information under the web root with insufficient access control, which all... |
| CVE-2007-2752 | — | — | 1.2% | May 17, 2007 | SQL injection vulnerability in devami.asp in RunawaySoft Haber portal 1.0 allows remote attackers to execute arbitrary S... |
| CVE-2007-2751 | — | — | 3.3% | May 17, 2007 | Multiple PHP remote file inclusion vulnerabilities in PHPGlossar 0.8 allow remote attackers to execute arbitrary PHP cod... |
| CVE-2007-2750 | — | — | 1.2% | May 17, 2007 | SQL injection vulnerability in print.php in SimpNews 2.40.01 and earlier allows remote attackers to execute arbitrary SQ... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now