2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-2646——Heap-based buffer overflow in yEnc32 1.0.7.207 allows user-assisted remote attackers to execute arbitrary code via a lon...
CVE-2007-2645——Integer overflow in the exif_data_load_data_entry function in exif-data.c in libexif before 0.6.14 allows user-assisted ...
CVE-2007-0754——Heap-based buffer overflow in Apple QuickTime before 7.1.3 allows user-assisted remote attackers to execute arbitrary co...
CVE-2007-1902——Multiple SQL injection vulnerabilities in SonicBB 1.0 allow remote attackers to execute arbitrary SQL commands via the (...
CVE-2007-1903——Cross-site scripting (XSS) vulnerability in search.php in SonicBB 1.0 allows remote attackers to inject arbitrary web sc...
CVE-2007-2653——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-2438. Reason: This candidate is a duplicate of...
CVE-2007-0689——MyBB 1.2.4 allows remote attackers to obtain sensitive information via the (1) action[] parameter to member.php, (2) ima...
CVE-2007-2641——SQL injection vulnerability in W1L3D4_bolum.asp in W1L3D4 Philboard 0.2 allows remote attackers to execute arbitrary SQL...
CVE-2007-2640——LibTMCG before 1.1.1 does not perform a range check to avoid "trivial group generators," which allows attackers to obtai...
CVE-2007-2639——Directory traversal vulnerability in TFTPdWin 0.4.2 allows remote attackers to read or modify arbitrary files outside th...
CVE-2007-2638——eFileCabinet 3.3 allows remote attackers to bypass authentication and access restricted portions of the interface via an...
CVE-2007-2637——MoinMoin before 20070507 does not properly enforce ACLs for calendars and includes, which allows remote attackers to rea...
CVE-2007-2636——Unspecified vulnerability in phpTodo before 0.8.1 allows remote attackers to have an unknown impact via newlines in regu...
CVE-2007-2635——Unspecified vulnerability in Interchange before 5.4.2 allows remote attackers to cause an unspecified denial of service ...
CVE-2007-2634——PHP remote file inclusion vulnerability in common/errormsg.php in aForum 1.32 and possibly earlier, when register_global...
CVE-2007-2633——Directory traversal vulnerability in H-Sphere SiteStudio 1.6 allows remote attackers to read, or include and execute, ar...
CVE-2007-2632——Multiple cross-site scripting (XSS) vulnerabilities in PHP Multi User Randomizer (phpMUR) 2006.09.13 allow remote attack...
CVE-2007-2631——Cross-site request forgery (CSRF) vulnerability in SquirrelMail 1.4.8-4.fc6 and earlier allows remote attackers to perfo...
CVE-2007-2644——A certain ActiveX control in Morovia Barcode ActiveX Professional 3.3.1304 allows remote attackers to overwrite arbitrar...
CVE-2007-2643——Directory traversal vulnerability in phpThumb.php in PinkCrow Designs Gallery or maGAZIn 2.0 allows remote attackers to ...
CVE-2007-2642——Directory traversal vulnerability in galeria.php in R2K Gallery 1.7 allows remote attackers to read arbitrary files via ...
CVE-2007-0748——Heap-based buffer overflow in Apple Darwin Streaming Proxy, when using Darwin Streaming Server before 5.5.5, allows remo...
CVE-2007-0749——Multiple stack-based buffer overflows in the is_command function in proxy.c in Apple Darwin Streaming Proxy, when using ...
CVE-2007-2625——Cross-site scripting (XSS) vulnerability in shared/code/cp_authorization.php in All In One Control Panel (AIOCP) before ...
CVE-2007-2624——Dynamic variable evaluation vulnerability in shared/config/cp_config.php in All In One Control Panel (AIOCP) before 1.3....

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now