2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-2175 | — | — | 83.8% | Apr 24, 2007 | Apple QuickTime Java extensions (QTJava.dll), as used in Safari and other browsers, and when Java is enabled, allows rem... |
| CVE-2007-2174 | — | — | 0.4% | Apr 24, 2007 | The IOCTL handling in srescan.sys in the ZoneAlarm Spyware Removal Engine (SRE) in Check Point ZoneAlarm before 5.0.156.... |
| CVE-2007-2168 | — | — | 2.3% | Apr 22, 2007 | Static code injection vulnerability in process.php in AimStats 3.2 and earlier allows remote attackers to inject PHP cod... |
| CVE-2007-2167 | — | — | 44.4% | Apr 22, 2007 | Static code injection vulnerability in process.php in AimStats 3.2 allows remote attackers to inject PHP code into confi... |
| CVE-2007-2166 | — | — | 3.2% | Apr 22, 2007 | PHP remote file inclusion vulnerability in administration/user/lib/group.inc.php in OpenSurveyPilot (osp) 1.2.1 and earl... |
| CVE-2007-2165 | — | — | 12.5% | Apr 22, 2007 | The Auth API in ProFTPD before 20070417, when multiple simultaneous authentication modules are configured, does not requ... |
| CVE-2007-2164 | — | — | 1.4% | Apr 22, 2007 | Konqueror 3.5.5 release 45.4 allows remote attackers to cause a denial of service (browser crash or abort) via JavaScrip... |
| CVE-2007-2163 | — | — | 1.1% | Apr 22, 2007 | Apple Safari allows remote attackers to cause a denial of service (browser crash) via JavaScript that matches a regular ... |
| CVE-2007-2162 | — | — | 1.4% | Apr 22, 2007 | (1) Mozilla Firefox 2.0.0.3 and (2) GNU IceWeasel 2.0.0.3 allow remote attackers to cause a denial of service (browser c... |
| CVE-2007-2161 | — | — | 12.3% | Apr 22, 2007 | Microsoft Internet Explorer 7 allows remote attackers to cause a denial of service (browser hang) via JavaScript that ma... |
| CVE-2007-2160 | — | — | 1.4% | Apr 22, 2007 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Database Administration (dba) module 4.6.x-*, and befo... |
| CVE-2007-2159 | — | — | 1.0% | Apr 22, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in the Database Administration (dba) module 4.6.x-*, and before 4.7.... |
| CVE-2007-1972 | — | — | 4.0% | Apr 22, 2007 | PatrolAgent.exe in BMC Performance Manager does not require authentication for requests to modify configuration files, w... |
| CVE-2007-2136 | — | — | 4.3% | Apr 22, 2007 | Stack-based buffer overflow in bgs_sdservice.exe in BMC Patrol PerformAgent allows remote attackers to execute arbitrary... |
| CVE-2007-2137 | — | — | 7.7% | Apr 22, 2007 | Heap-based buffer overflow in kde.dll in IBM Tivoli Monitoring Express 6.1.0 before Fix Pack 2, as used in Tivoli Univer... |
| CVE-2007-2172 | — | — | 0.4% | Apr 22, 2007 | A typo in Linux kernel 2.6 before 2.6.21-rc6 and 2.4 before 2.4.35 causes RTA_MAX to be used as an array size instead of... |
| CVE-2007-2169 | — | — | 5.9% | Apr 22, 2007 | Static code injection vulnerability in add.php in Mozzers SubSystem 1.0 allows remote attackers to inject PHP code into ... |
| CVE-2007-2149 | — | — | 3.1% | Apr 19, 2007 | Stephen Craton (aka WiredPHP) Chatness 2.5.3 and earlier stores usernames and unencrypted passwords in (1) classes/vars.... |
| CVE-2007-2150 | — | — | 1.4% | Apr 19, 2007 | BlueArc-FTPD in BlueArc Titan 2x00 devices with firmware 4.2.944b allows remote attackers to redirect traffic to other s... |
| CVE-2007-2151 | — | — | 1.9% | Apr 19, 2007 | The administration server in McAfee e-Business Server before 8.1.1 and 8.5.x before 8.5.2 allows remote attackers to cau... |
| CVE-2007-2152 | — | — | 2.6% | Apr 19, 2007 | Buffer overflow in the On-Access Scanner in McAfee VirusScan Enterprise before 8.0i Patch 12 allows user-assisted remote... |
| CVE-2007-2153 | — | — | 1.2% | Apr 19, 2007 | Cross-site scripting (XSS) vulnerability in atmail.php in @Mail 5.0 allows remote attackers to inject arbitrary web scri... |
| CVE-2007-2154 | — | — | 2.8% | Apr 19, 2007 | PHP remote file inclusion vulnerability in services/samples/inclusionService.php in Cabron Connector 1.1.0 allows remote... |
| CVE-2007-2155 | — | — | 2.9% | Apr 19, 2007 | Directory traversal vulnerability in template.php in in phpFaber TopSites 3 allows remote attackers to read arbitrary fi... |
| CVE-2007-2141 | — | — | 45.8% | Apr 19, 2007 | Direct static code injection vulnerability in shoutbox.php in ShoutPro 1.5.2 allows remote attackers to inject arbitrary... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now