2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-2439 | — | — | 2.3% | May 16, 2007 | Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to cause a denial... |
| CVE-2007-2720 | — | — | 1.1% | May 16, 2007 | Group-Office before 2.16-13 does not properly validate user IDs, which allows remote attackers to obtain sensitive infor... |
| CVE-2007-2441 | — | — | 3.3% | May 16, 2007 | Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to obtain the sys... |
| CVE-2007-2716 | — | — | 4.2% | May 16, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in EQdkp 1.3.2c and earlier allow remote attackers to inject arbitra... |
| CVE-2007-2717 | — | — | 1.0% | May 16, 2007 | SQL injection vulnerability in shop/page.php in iGeneric (iG) Shop 1.4 allows remote attackers to execute arbitrary SQL ... |
| CVE-2007-2719 | — | — | 4.5% | May 16, 2007 | Session fixation vulnerability in HP Systems Insight Manager (SIM) 4.2 and 5.0 SP4 and SP5 allows remote attackers to hi... |
| CVE-2007-2718 | — | — | 16.4% | May 16, 2007 | Cross-site scripting (XSS) vulnerability in the WebMail system in Stalker CommuniGate Pro 5.1.8 and earlier, when using ... |
| CVE-2007-2440 | — | — | 3.6% | May 16, 2007 | Directory traversal vulnerability in Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allo... |
| CVE-2007-2711 | — | — | 62.7% | May 16, 2007 | Stack-based buffer overflow in TinyIdentD 2.2 and earlier allows remote attackers to execute arbitrary code via a long s... |
| CVE-2007-2709 | — | — | 3.2% | May 16, 2007 | PHP remote file inclusion vulnerability in functions/prepend_adm.php in NagiosQL 2005 2.00 allows remote attackers to ex... |
| CVE-2007-2708 | — | — | 61.7% | May 16, 2007 | PHP remote file inclusion vulnerability in newsadmin.php in Feindt Computerservice News (News-Script) 2.0 allows remote ... |
| CVE-2007-2707 | — | — | 68.0% | May 16, 2007 | PHP remote file inclusion vulnerability in linksnet_linkslog_rss.php in Linksnet Newsfeed 1.0 allows remote attackers to... |
| CVE-2007-2706 | — | — | 3.3% | May 16, 2007 | PHP remote file inclusion vulnerability in maint/ftpmedia.php in Media Gallery 1.4.8a and earlier for Geeklog allows rem... |
| CVE-2007-2714 | — | — | 11.2% | May 16, 2007 | Unspecified vulnerability in akismet.php in Matt Mullenweg Akismet before 2.0.2, a WordPress plugin, has unknown impact ... |
| CVE-2007-2715 | — | — | 10.2% | May 16, 2007 | Admin/users.php in Snaps! Gallery 1.4.4 allows remote attackers to change arbitrary usernames and passwords via the (1) ... |
| CVE-2007-2713 | — | — | 2.7% | May 16, 2007 | ifdate 2.x sends a redirect to the web browser but does not exit when administrative credentials are missing, which allo... |
| CVE-2007-2712 | — | — | 1.8% | May 16, 2007 | Unspecified vulnerability in MH Software Connect Daily before 3.3.3 has unknown impact and attack vectors. |
| CVE-2007-2710 | — | — | 2.3% | May 16, 2007 | PHP remote file inclusion vulnerability in functions/prepend_adm.php in NagiosQL 2.00-P00 and earlier allows remote atta... |
| CVE-2007-2690 | — | — | 2.0% | May 16, 2007 | Multiple IBM ISS Proventia Series products, including the A, G, and M series, do not properly handle certain full-width ... |
| CVE-2007-2705 | — | — | 1.8% | May 16, 2007 | Directory traversal vulnerability in the Test View Console in BEA WebLogic Integration 9.2 before SP1 and WebLogic Works... |
| CVE-2007-2704 | — | — | 1.6% | May 16, 2007 | BEA WebLogic Server 9.0 through 9.2 allows remote attackers to cause a denial of service (SSL port unavailability) by ac... |
| CVE-2007-2703 | — | — | 1.5% | May 16, 2007 | BEA WebLogic Portal 9.2 GA can corrupt a visitor entitlements role if an administrator provides a long role description,... |
| CVE-2007-2702 | — | — | 1.5% | May 16, 2007 | Cross-site scripting (XSS) vulnerability in the GroupSpace application in BEA WebLogic Portal 9.2 GA allows remote authe... |
| CVE-2007-2701 | — | — | 1.7% | May 16, 2007 | The JMS Message Bridge in BEA WebLogic Server 7.0 through SP7 and 8.1 through Service Pack 6, when configured without a ... |
| CVE-2007-2700 | — | — | 1.7% | May 16, 2007 | The WLST script generated by the configToScript command in BEA WebLogic Express and WebLogic Server 9.0 and 9.1 does not... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now