2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-0744SMB in Apple Mac OS X 10.3.9 through 10.4.9 does not properly clean the environment when executing commands, which allow...
CVE-2007-0739The Login Window in Apple Mac OS X 10.4 through 10.4.9 displays the software update window beneath the loginwindow authe...
CVE-2007-0735Use-after-free vulnerability in Libinfo in Apple Mac OS X 10.3.9 through 10.4.9 allows remote attackers to cause a denia...
CVE-2007-2175Apple QuickTime Java extensions (QTJava.dll), as used in Safari and other browsers, and when Java is enabled, allows rem...
CVE-2007-0725Buffer overflow in the AirPortDriver module for AirPort in Apple Mac OS X 10.3.9 through 10.4.9, when running on hardwar...
CVE-2007-0729Apple File Protocol (AFP) Client in Apple Mac OS X 10.3.9 through 10.4.9 does not properly clean the environment before ...
CVE-2007-2174The IOCTL handling in srescan.sys in the ZoneAlarm Spyware Removal Engine (SRE) in Check Point ZoneAlarm before 5.0.156....
CVE-2007-2173Eval injection vulnerability in (1) courier-imapd.indirect and (2) courier-pop3d.indirect in Courier-IMAP before 4.0.6-r...
CVE-2007-1353The setsockopt function in the L2CAP and HCI Bluetooth support in the Linux kernel before 2.4.34.3 allows context-depend...
CVE-2007-2177Stack-based buffer overflow in the Microgaming Download Helper ActiveX control (dlhelper.dll) before 7.2.0.19, and the W...
CVE-2007-0443Multiple buffer overflows in the CDDBControl ActiveX control in Gracenote CDDB before 20070418 allow remote attackers to...
CVE-2007-0732Unspecified vulnerability in the CoreServices daemon in CarbonCore in Apple Mac OS X 10.4 through 10.4.9 allows local us...
CVE-2007-2176Unspecified vulnerability in Mozilla Firefox allows remote attackers to execute arbitrary code via unspecified vectors i...
CVE-2007-2159Multiple cross-site scripting (XSS) vulnerabilities in the Database Administration (dba) module 4.6.x-*, and before 4.7....
CVE-2007-1972PatrolAgent.exe in BMC Performance Manager does not require authentication for requests to modify configuration files, w...
CVE-2007-2162(1) Mozilla Firefox 2.0.0.3 and (2) GNU IceWeasel 2.0.0.3 allow remote attackers to cause a denial of service (browser c...
CVE-2007-2161Microsoft Internet Explorer 7 allows remote attackers to cause a denial of service (browser hang) via JavaScript that ma...
CVE-2007-2160Multiple cross-site request forgery (CSRF) vulnerabilities in the Database Administration (dba) module 4.6.x-*, and befo...
CVE-2007-2165The Auth API in ProFTPD before 20070417, when multiple simultaneous authentication modules are configured, does not requ...
CVE-2007-2166PHP remote file inclusion vulnerability in administration/user/lib/group.inc.php in OpenSurveyPilot (osp) 1.2.1 and earl...
CVE-2007-2167Static code injection vulnerability in process.php in AimStats 3.2 allows remote attackers to inject PHP code into confi...
CVE-2007-2168Static code injection vulnerability in process.php in AimStats 3.2 and earlier allows remote attackers to inject PHP cod...
CVE-2007-2169Static code injection vulnerability in add.php in Mozzers SubSystem 1.0 allows remote attackers to inject PHP code into ...
CVE-2007-2164Konqueror 3.5.5 release 45.4 allows remote attackers to cause a denial of service (browser crash or abort) via JavaScrip...
CVE-2007-2163Apple Safari allows remote attackers to cause a denial of service (browser crash) via JavaScript that matches a regular ...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now