2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-2433 | — | — | 1.8% | May 2, 2007 | Cross-site scripting (XSS) vulnerability in index.php in Ariadne 2.4.1 allows remote attackers to inject arbitrary web s... |
| CVE-2007-2432 | — | — | 1.8% | May 2, 2007 | Cross-site scripting (XSS) vulnerability in utilities/search.asp in nukedit 4.9.7b allows remote attackers to inject arb... |
| CVE-2007-2241 | — | — | 7.6% | May 2, 2007 | Unspecified vulnerability in query.c in ISC BIND 9.4.0, and 9.5.0a1 through 9.5.0a3, when recursion is enabled, allows r... |
| CVE-2007-2436 | — | — | — | May 2, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-1861. Reason: This candidate is a duplicate of... |
| CVE-2007-2437 | — | — | 4.4% | May 2, 2007 | The X render (Xrender) extension in X.org X Window System 7.0, 7.1, and 7.2, with Xserver 1.3.0 and earlier, allows remo... |
| CVE-2007-2420 | — | — | 3.1% | May 2, 2007 | SQL injection vulnerability in bry.asp in Burak Yilmaz Blog 1.0 allows remote attackers to execute arbitrary SQL command... |
| CVE-2007-2431 | — | — | 5.1% | May 2, 2007 | Dynamic variable evaluation vulnerability in shared/config/tce_config.php in TCExam 4.0.011 and earlier allows remote at... |
| CVE-2007-2430 | — | — | 3.7% | May 2, 2007 | shared/code/tce_tmx.php in TCExam 4.0.011 and earlier allows remote attackers to create arbitrary PHP files in cache/ by... |
| CVE-2007-2429 | — | — | 8.0% | May 2, 2007 | ManageEngine PasswordManager Pro (PMP) allows remote attackers to obtain administrative access to a database by injectin... |
| CVE-2007-2428 | — | — | 9.7% | May 2, 2007 | Multiple PHP remote file inclusion vulnerabilities in page.php in Ahhp-Portal allow remote attackers to execute arbitrar... |
| CVE-2007-2427 | — | — | 3.6% | May 2, 2007 | SQL injection vulnerability in index.php in the pnFlashGames 1.5 module for PostNuke allows remote attackers to execute ... |
| CVE-2007-2426 | — | — | 62.9% | May 2, 2007 | PHP remote file inclusion vulnerability in myfunctions/mygallerybrowser.php in the myGallery 1.4b4 and earlier plugin fo... |
| CVE-2007-2425 | — | — | 7.8% | May 2, 2007 | Directory traversal vulnerability in fileview.php in Imageview 5.3 allows remote attackers to read arbitrary files via a... |
| CVE-2007-2424 | — | — | 9.9% | May 2, 2007 | PHP remote file inclusion vulnerability in help/index.php in The Merchant (themerchant) 2.2 allows remote attackers to e... |
| CVE-2007-2423 | — | — | 3.6% | May 2, 2007 | Cross-site scripting (XSS) vulnerability in index.php in MoinMoin 1.5.7 allows remote attackers to inject arbitrary web ... |
| CVE-2007-2421 | — | — | 4.3% | May 2, 2007 | Buffer overflow in Hitachi Groupmax Mobile Option for Mobile-Phone 07-00 through 07-30, 5 for i-mode 05-11 through 05-23... |
| CVE-2007-2422 | CRITICAL | 9.8 | 2.4% | May 2, 2007 | Multiple PHP remote file inclusion vulnerabilities in Modules Builder (modbuild) 4.1 for Comdev One Admin allow remote a... |
| CVE-2007-2413 | — | — | — | May 1, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-2459. Reason: This candidate is a duplicate of... |
| CVE-2007-2411 | — | — | 2.7% | May 1, 2007 | PHP remote file inclusion vulnerability in index.php in Sphider 1.2.x allows remote attackers to execute arbitrary PHP c... |
| CVE-2007-2415 | — | — | 2.2% | May 1, 2007 | Pi3Web Web Server 2.0.3 PL1 allows remote attackers to cause a denial of service (application exit) via a long URI. NOT... |
| CVE-2007-2414 | — | — | 2.9% | May 1, 2007 | MyServer before 0.8.8 allows remote attackers to cause a denial of service via unspecified vectors. |
| CVE-2007-2412 | — | — | 1.7% | May 1, 2007 | Directory traversal vulnerability in modules/file.php in Seir Anphin allows remote attackers to obtain sensitive informa... |
| CVE-2007-2416 | — | — | 3.2% | May 1, 2007 | SQL injection vulnerability in home.php in E-Annu allows remote attackers to execute arbitrary SQL commands via the a pa... |
| CVE-2007-2380 | — | — | 12.3% | Apr 30, 2007 | The Microsoft Atlas framework exchanges data using JavaScript Object Notation (JSON) without an associated protection sc... |
| CVE-2007-2379 | — | — | 2.8% | Apr 30, 2007 | The jQuery framework exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, whi... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now