2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-0744 | — | — | 0.4% | Apr 24, 2007 | SMB in Apple Mac OS X 10.3.9 through 10.4.9 does not properly clean the environment when executing commands, which allow... |
| CVE-2007-0739 | — | — | 0.4% | Apr 24, 2007 | The Login Window in Apple Mac OS X 10.4 through 10.4.9 displays the software update window beneath the loginwindow authe... |
| CVE-2007-0735 | — | — | 3.6% | Apr 24, 2007 | Use-after-free vulnerability in Libinfo in Apple Mac OS X 10.3.9 through 10.4.9 allows remote attackers to cause a denia... |
| CVE-2007-2175 | — | — | 83.8% | Apr 24, 2007 | Apple QuickTime Java extensions (QTJava.dll), as used in Safari and other browsers, and when Java is enabled, allows rem... |
| CVE-2007-0725 | — | — | 0.5% | Apr 24, 2007 | Buffer overflow in the AirPortDriver module for AirPort in Apple Mac OS X 10.3.9 through 10.4.9, when running on hardwar... |
| CVE-2007-0729 | — | — | 0.9% | Apr 24, 2007 | Apple File Protocol (AFP) Client in Apple Mac OS X 10.3.9 through 10.4.9 does not properly clean the environment before ... |
| CVE-2007-2174 | — | — | 0.4% | Apr 24, 2007 | The IOCTL handling in srescan.sys in the ZoneAlarm Spyware Removal Engine (SRE) in Check Point ZoneAlarm before 5.0.156.... |
| CVE-2007-2173 | — | — | 4.7% | Apr 24, 2007 | Eval injection vulnerability in (1) courier-imapd.indirect and (2) courier-pop3d.indirect in Courier-IMAP before 4.0.6-r... |
| CVE-2007-1353 | — | — | 0.4% | Apr 24, 2007 | The setsockopt function in the L2CAP and HCI Bluetooth support in the Linux kernel before 2.4.34.3 allows context-depend... |
| CVE-2007-2177 | — | — | 3.1% | Apr 24, 2007 | Stack-based buffer overflow in the Microgaming Download Helper ActiveX control (dlhelper.dll) before 7.2.0.19, and the W... |
| CVE-2007-0443 | — | — | 7.1% | Apr 24, 2007 | Multiple buffer overflows in the CDDBControl ActiveX control in Gracenote CDDB before 20070418 allow remote attackers to... |
| CVE-2007-0732 | — | — | 0.3% | Apr 24, 2007 | Unspecified vulnerability in the CoreServices daemon in CarbonCore in Apple Mac OS X 10.4 through 10.4.9 allows local us... |
| CVE-2007-2176 | — | — | 3.0% | Apr 24, 2007 | Unspecified vulnerability in Mozilla Firefox allows remote attackers to execute arbitrary code via unspecified vectors i... |
| CVE-2007-2159 | — | — | 1.0% | Apr 22, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in the Database Administration (dba) module 4.6.x-*, and before 4.7.... |
| CVE-2007-1972 | — | — | 4.0% | Apr 22, 2007 | PatrolAgent.exe in BMC Performance Manager does not require authentication for requests to modify configuration files, w... |
| CVE-2007-2162 | — | — | 1.4% | Apr 22, 2007 | (1) Mozilla Firefox 2.0.0.3 and (2) GNU IceWeasel 2.0.0.3 allow remote attackers to cause a denial of service (browser c... |
| CVE-2007-2161 | — | — | 12.3% | Apr 22, 2007 | Microsoft Internet Explorer 7 allows remote attackers to cause a denial of service (browser hang) via JavaScript that ma... |
| CVE-2007-2160 | — | — | 1.4% | Apr 22, 2007 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Database Administration (dba) module 4.6.x-*, and befo... |
| CVE-2007-2165 | — | — | 12.5% | Apr 22, 2007 | The Auth API in ProFTPD before 20070417, when multiple simultaneous authentication modules are configured, does not requ... |
| CVE-2007-2166 | — | — | 3.2% | Apr 22, 2007 | PHP remote file inclusion vulnerability in administration/user/lib/group.inc.php in OpenSurveyPilot (osp) 1.2.1 and earl... |
| CVE-2007-2167 | — | — | 44.4% | Apr 22, 2007 | Static code injection vulnerability in process.php in AimStats 3.2 allows remote attackers to inject PHP code into confi... |
| CVE-2007-2168 | — | — | 2.3% | Apr 22, 2007 | Static code injection vulnerability in process.php in AimStats 3.2 and earlier allows remote attackers to inject PHP cod... |
| CVE-2007-2169 | — | — | 5.9% | Apr 22, 2007 | Static code injection vulnerability in add.php in Mozzers SubSystem 1.0 allows remote attackers to inject PHP code into ... |
| CVE-2007-2164 | — | — | 1.4% | Apr 22, 2007 | Konqueror 3.5.5 release 45.4 allows remote attackers to cause a denial of service (browser crash or abort) via JavaScrip... |
| CVE-2007-2163 | — | — | 1.1% | Apr 22, 2007 | Apple Safari allows remote attackers to cause a denial of service (browser crash) via JavaScript that matches a regular ... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now