2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-2648 | — | — | 7.0% | May 14, 2007 | Stack-based buffer overflow in the Clever Database Comparer 2.2 ActiveX control (comparerax.ocx) allows remote attackers... |
| CVE-2007-2649 | — | — | 1.9% | May 14, 2007 | Deutsche Telekom (T-com) Speedport W 700v uses JavaScript delays for invalid authentication attempts to the CGI script, ... |
| CVE-2007-2650 | — | — | 3.2% | May 14, 2007 | The OLE2 parser in Clam AntiVirus (ClamAV) allows remote attackers to cause a denial of service (resource consumption) v... |
| CVE-2007-2651 | — | — | 2.9% | May 14, 2007 | Multiple off-by-one errors in VooDoo cIRCle before 1.1.beta27 allow remote attackers to cause a denial of service (conne... |
| CVE-2007-2652 | — | — | 2.9% | May 14, 2007 | Multiple unspecified vulnerabilities in Free-SA before 1.2.2 allow remote attackers to execute arbitrary code via unspec... |
| CVE-2007-2654 | — | — | 0.3% | May 14, 2007 | xfs_fsr in xfsdump creates a .fsr temporary directory with insecure permissions, which allows local users to read or ove... |
| CVE-2007-2655 | — | — | 3.9% | May 14, 2007 | Unspecified vulnerability in NetWin Webmail 3.1s-1 in SurgeMail before 3.8i2 has unknown impact and remote attack vector... |
| CVE-2007-1901 | — | — | 1.6% | May 14, 2007 | SonicBB 1.0 allows remote attackers to obtain sensitive information via the (1) by[] parameter to search.php, (2) p[] pa... |
| CVE-2007-0689 | — | — | 1.6% | May 14, 2007 | MyBB 1.2.4 allows remote attackers to obtain sensitive information via the (1) action[] parameter to member.php, (2) ima... |
| CVE-2007-2444 | — | — | 0.8% | May 14, 2007 | Logic error in the SID/Name translation functionality in smbd in Samba 3.0.23d through 3.0.25pre2 allows local users to ... |
| CVE-2007-1903 | — | — | 2.1% | May 14, 2007 | Cross-site scripting (XSS) vulnerability in search.php in SonicBB 1.0 allows remote attackers to inject arbitrary web sc... |
| CVE-2007-1902 | — | — | 1.6% | May 14, 2007 | Multiple SQL injection vulnerabilities in SonicBB 1.0 allow remote attackers to execute arbitrary SQL commands via the (... |
| CVE-2007-0754 | — | — | 5.0% | May 14, 2007 | Heap-based buffer overflow in Apple QuickTime before 7.1.3 allows user-assisted remote attackers to execute arbitrary co... |
| CVE-2007-2447 | — | — | 49.8% | May 14, 2007 | The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands ... |
| CVE-2007-2653 | — | — | — | May 14, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-2438. Reason: This candidate is a duplicate of... |
| CVE-2007-2644 | — | — | 4.7% | May 13, 2007 | A certain ActiveX control in Morovia Barcode ActiveX Professional 3.3.1304 allows remote attackers to overwrite arbitrar... |
| CVE-2007-2642 | — | — | 3.7% | May 13, 2007 | Directory traversal vulnerability in galeria.php in R2K Gallery 1.7 allows remote attackers to read arbitrary files via ... |
| CVE-2007-2636 | — | — | 1.2% | May 13, 2007 | Unspecified vulnerability in phpTodo before 0.8.1 allows remote attackers to have an unknown impact via newlines in regu... |
| CVE-2007-2643 | — | — | 3.7% | May 13, 2007 | Directory traversal vulnerability in phpThumb.php in PinkCrow Designs Gallery or maGAZIn 2.0 allows remote attackers to ... |
| CVE-2007-2638 | — | — | 2.6% | May 13, 2007 | eFileCabinet 3.3 allows remote attackers to bypass authentication and access restricted portions of the interface via an... |
| CVE-2007-2631 | — | — | 1.4% | May 13, 2007 | Cross-site request forgery (CSRF) vulnerability in SquirrelMail 1.4.8-4.fc6 and earlier allows remote attackers to perfo... |
| CVE-2007-2641 | — | — | 2.0% | May 13, 2007 | SQL injection vulnerability in W1L3D4_bolum.asp in W1L3D4 Philboard 0.2 allows remote attackers to execute arbitrary SQL... |
| CVE-2007-2639 | — | — | 3.6% | May 13, 2007 | Directory traversal vulnerability in TFTPdWin 0.4.2 allows remote attackers to read or modify arbitrary files outside th... |
| CVE-2007-2637 | — | — | 1.5% | May 13, 2007 | MoinMoin before 20070507 does not properly enforce ACLs for calendars and includes, which allows remote attackers to rea... |
| CVE-2007-2640 | — | — | 1.4% | May 13, 2007 | LibTMCG before 1.1.1 does not perform a range check to avoid "trivial group generators," which allows attackers to obtai... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now