2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-2699 | — | — | 30.9% | May 16, 2007 | The Administration Console in BEA WebLogic Express and WebLogic Server 9.0 and 9.1 does not properly enforce certain Dom... |
| CVE-2007-2698 | — | — | 1.9% | May 16, 2007 | The Administration Console in BEA WebLogic Server 9.0 may show plaintext Web Service attributes during configuration cre... |
| CVE-2007-2697 | — | — | 2.2% | May 16, 2007 | The embedded LDAP server in BEA WebLogic Express and WebLogic Server 7.0 through SP6, 8.1 through SP5, 9.0, and 9.1, whe... |
| CVE-2007-2696 | — | — | 2.1% | May 16, 2007 | The JMS Server in BEA WebLogic Server 6.1 through SP7, 7.0 through SP6, and 8.1 through SP5 enforces security access pol... |
| CVE-2007-2695 | — | — | 2.5% | May 16, 2007 | The HttpClusterServlet and HttpProxyServlet in BEA WebLogic Express and WebLogic Server 6.1 through SP7, 7.0 through SP7... |
| CVE-2007-2694 | — | — | 1.7% | May 16, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in BEA WebLogic Express and WebLogic Server 6.1 through SP7, 7.0 thr... |
| CVE-2007-2693 | — | — | 1.8% | May 16, 2007 | MySQL before 5.1.18 allows remote authenticated users without SELECT privileges to obtain sensitive information from par... |
| CVE-2007-2691 | — | — | 2.8% | May 16, 2007 | MySQL before 4.1.23, 5.0.x before 5.0.42, and 5.1.x before 5.1.18 does not require the DROP privilege for RENAME TABLE s... |
| CVE-2007-2689 | — | — | 2.0% | May 16, 2007 | Check Point Web Intelligence does not properly handle certain full-width and half-width Unicode character encodings, whi... |
| CVE-2007-2688 | — | — | 3.0% | May 16, 2007 | The Cisco Intrusion Prevention System (IPS) and IOS with Firewall/IPS Feature Set do not properly handle certain full-wi... |
| CVE-2007-2692 | — | — | 1.9% | May 16, 2007 | The mysql_change_db function in MySQL 5.0.x before 5.0.40 and 5.1.x before 5.1.18 does not restore THD::db_access privil... |
| CVE-2007-2683 | — | — | 0.8% | May 15, 2007 | Buffer overflow in Mutt 1.4.2 might allow local users to execute arbitrary code via "&" characters in the GECOS field, w... |
| CVE-2007-2679 | — | — | 1.3% | May 15, 2007 | PHP file inclusion vulnerability in index.php in Ivan Peevski gallery 0.3 in Simple PHP Scripts (sphp) allows remote att... |
| CVE-2007-2678 | — | — | 3.6% | May 15, 2007 | Buffer overflow in the isChecked function in toolbar.dll in Netsprint Toolbar 1.1 might allow remote attackers to execut... |
| CVE-2007-2681 | — | — | 1.5% | May 15, 2007 | Directory traversal vulnerability in blogs/index.php in b2evolution 1.6 allows remote attackers to include and execute a... |
| CVE-2007-2680 | — | — | 1.2% | May 15, 2007 | Cross-site scripting (XSS) vulnerability in the management interface in Canon Network Camera Server VB100 and VB101 with... |
| CVE-2007-2676 | — | — | 70.0% | May 14, 2007 | PHP remote file inclusion vulnerability in skins/header.php in Open Translation Engine (OTE) 0.7.8 allows remote attacke... |
| CVE-2007-2675 | — | — | 1.8% | May 14, 2007 | SQL injection vulnerability in search.php in Pre Classifieds Listings 1.0 allows remote attackers to execute arbitrary S... |
| CVE-2007-2674 | — | — | 1.3% | May 14, 2007 | SQL injection vulnerability in detail.php in Pre Shopping Mall 1.0 allows remote attackers to execute arbitrary SQL comm... |
| CVE-2007-2673 | — | — | 2.3% | May 14, 2007 | SQL injection vulnerability in includes/funcs_vendors.php in Censura 1.15.04, and other versions before 1.16.04, allows ... |
| CVE-2007-2672 | — | — | 2.5% | May 14, 2007 | SQL injection vulnerability in index.php in PHP Coupon Script 3.0 allows remote attackers to execute arbitrary SQL comma... |
| CVE-2007-2671 | — | — | 3.2% | May 14, 2007 | Mozilla Firefox 2.0.0.3 allows remote attackers to cause a denial of service (application crash) via a long hostname in ... |
| CVE-2007-2661 | — | — | 1.2% | May 14, 2007 | SQL injection vulnerability in archshow.asp in BlogMe 3.0 allows remote attackers to execute arbitrary SQL commands via ... |
| CVE-2007-2656 | — | — | 4.5% | May 14, 2007 | Stack-based buffer overflow in the Hewlett-Packard (HP) Magview ActiveX control in hpqvwocx.dll 1.0.0.309 allows remote ... |
| CVE-2007-2669 | — | — | 1.9% | May 14, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in PHPChain 1.0 and earlier allow remote attackers to inject arbitra... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now