2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-2646Heap-based buffer overflow in yEnc32 1.0.7.207 allows user-assisted remote attackers to execute arbitrary code via a lon...
CVE-2007-2645Integer overflow in the exif_data_load_data_entry function in exif-data.c in libexif before 0.6.14 allows user-assisted ...
CVE-2007-0754Heap-based buffer overflow in Apple QuickTime before 7.1.3 allows user-assisted remote attackers to execute arbitrary co...
CVE-2007-1902Multiple SQL injection vulnerabilities in SonicBB 1.0 allow remote attackers to execute arbitrary SQL commands via the (...
CVE-2007-1903Cross-site scripting (XSS) vulnerability in search.php in SonicBB 1.0 allows remote attackers to inject arbitrary web sc...
CVE-2007-2653Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-2438. Reason: This candidate is a duplicate of...
CVE-2007-0689MyBB 1.2.4 allows remote attackers to obtain sensitive information via the (1) action[] parameter to member.php, (2) ima...
CVE-2007-2641SQL injection vulnerability in W1L3D4_bolum.asp in W1L3D4 Philboard 0.2 allows remote attackers to execute arbitrary SQL...
CVE-2007-2640LibTMCG before 1.1.1 does not perform a range check to avoid "trivial group generators," which allows attackers to obtai...
CVE-2007-2639Directory traversal vulnerability in TFTPdWin 0.4.2 allows remote attackers to read or modify arbitrary files outside th...
CVE-2007-2638eFileCabinet 3.3 allows remote attackers to bypass authentication and access restricted portions of the interface via an...
CVE-2007-2637MoinMoin before 20070507 does not properly enforce ACLs for calendars and includes, which allows remote attackers to rea...
CVE-2007-2636Unspecified vulnerability in phpTodo before 0.8.1 allows remote attackers to have an unknown impact via newlines in regu...
CVE-2007-2635Unspecified vulnerability in Interchange before 5.4.2 allows remote attackers to cause an unspecified denial of service ...
CVE-2007-2634PHP remote file inclusion vulnerability in common/errormsg.php in aForum 1.32 and possibly earlier, when register_global...
CVE-2007-2633Directory traversal vulnerability in H-Sphere SiteStudio 1.6 allows remote attackers to read, or include and execute, ar...
CVE-2007-2632Multiple cross-site scripting (XSS) vulnerabilities in PHP Multi User Randomizer (phpMUR) 2006.09.13 allow remote attack...
CVE-2007-2631Cross-site request forgery (CSRF) vulnerability in SquirrelMail 1.4.8-4.fc6 and earlier allows remote attackers to perfo...
CVE-2007-2644A certain ActiveX control in Morovia Barcode ActiveX Professional 3.3.1304 allows remote attackers to overwrite arbitrar...
CVE-2007-2643Directory traversal vulnerability in phpThumb.php in PinkCrow Designs Gallery or maGAZIn 2.0 allows remote attackers to ...
CVE-2007-2642Directory traversal vulnerability in galeria.php in R2K Gallery 1.7 allows remote attackers to read arbitrary files via ...
CVE-2007-0748Heap-based buffer overflow in Apple Darwin Streaming Proxy, when using Darwin Streaming Server before 5.5.5, allows remo...
CVE-2007-0749Multiple stack-based buffer overflows in the is_command function in proxy.c in Apple Darwin Streaming Proxy, when using ...
CVE-2007-2625Cross-site scripting (XSS) vulnerability in shared/code/cp_authorization.php in All In One Control Panel (AIOCP) before ...
CVE-2007-2624Dynamic variable evaluation vulnerability in shared/config/cp_config.php in All In One Control Panel (AIOCP) before 1.3....

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now