2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-2699——The Administration Console in BEA WebLogic Express and WebLogic Server 9.0 and 9.1 does not properly enforce certain Dom...
CVE-2007-2698——The Administration Console in BEA WebLogic Server 9.0 may show plaintext Web Service attributes during configuration cre...
CVE-2007-2697——The embedded LDAP server in BEA WebLogic Express and WebLogic Server 7.0 through SP6, 8.1 through SP5, 9.0, and 9.1, whe...
CVE-2007-2696——The JMS Server in BEA WebLogic Server 6.1 through SP7, 7.0 through SP6, and 8.1 through SP5 enforces security access pol...
CVE-2007-2695——The HttpClusterServlet and HttpProxyServlet in BEA WebLogic Express and WebLogic Server 6.1 through SP7, 7.0 through SP7...
CVE-2007-2694——Multiple cross-site scripting (XSS) vulnerabilities in BEA WebLogic Express and WebLogic Server 6.1 through SP7, 7.0 thr...
CVE-2007-2693——MySQL before 5.1.18 allows remote authenticated users without SELECT privileges to obtain sensitive information from par...
CVE-2007-2691——MySQL before 4.1.23, 5.0.x before 5.0.42, and 5.1.x before 5.1.18 does not require the DROP privilege for RENAME TABLE s...
CVE-2007-2689——Check Point Web Intelligence does not properly handle certain full-width and half-width Unicode character encodings, whi...
CVE-2007-2688——The Cisco Intrusion Prevention System (IPS) and IOS with Firewall/IPS Feature Set do not properly handle certain full-wi...
CVE-2007-2692——The mysql_change_db function in MySQL 5.0.x before 5.0.40 and 5.1.x before 5.1.18 does not restore THD::db_access privil...
CVE-2007-2683——Buffer overflow in Mutt 1.4.2 might allow local users to execute arbitrary code via "&" characters in the GECOS field, w...
CVE-2007-2679——PHP file inclusion vulnerability in index.php in Ivan Peevski gallery 0.3 in Simple PHP Scripts (sphp) allows remote att...
CVE-2007-2678——Buffer overflow in the isChecked function in toolbar.dll in Netsprint Toolbar 1.1 might allow remote attackers to execut...
CVE-2007-2681——Directory traversal vulnerability in blogs/index.php in b2evolution 1.6 allows remote attackers to include and execute a...
CVE-2007-2680——Cross-site scripting (XSS) vulnerability in the management interface in Canon Network Camera Server VB100 and VB101 with...
CVE-2007-2676——PHP remote file inclusion vulnerability in skins/header.php in Open Translation Engine (OTE) 0.7.8 allows remote attacke...
CVE-2007-2675——SQL injection vulnerability in search.php in Pre Classifieds Listings 1.0 allows remote attackers to execute arbitrary S...
CVE-2007-2674——SQL injection vulnerability in detail.php in Pre Shopping Mall 1.0 allows remote attackers to execute arbitrary SQL comm...
CVE-2007-2673——SQL injection vulnerability in includes/funcs_vendors.php in Censura 1.15.04, and other versions before 1.16.04, allows ...
CVE-2007-2672——SQL injection vulnerability in index.php in PHP Coupon Script 3.0 allows remote attackers to execute arbitrary SQL comma...
CVE-2007-2671——Mozilla Firefox 2.0.0.3 allows remote attackers to cause a denial of service (application crash) via a long hostname in ...
CVE-2007-2661——SQL injection vulnerability in archshow.asp in BlogMe 3.0 allows remote attackers to execute arbitrary SQL commands via ...
CVE-2007-2656——Stack-based buffer overflow in the Hewlett-Packard (HP) Magview ActiveX control in hpqvwocx.dll 1.0.0.309 allows remote ...
CVE-2007-2669——Multiple cross-site scripting (XSS) vulnerabilities in PHPChain 1.0 and earlier allow remote attackers to inject arbitra...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now