2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-2027Untrusted search path vulnerability in the add_filename_to_string function in intl/gettext/loadmsgcat.c for Elinks 0.11....
CVE-2007-1873Cross-site scripting (XSS) vulnerability in Mephisto 0.7.3 allows remote attackers to inject arbitrary web script or HTM...
CVE-2007-2025Unrestricted file upload vulnerability in the UpLoad feature (lib/plugin/UpLoad.php) in PhpWiki 1.3.11p1 allows remote a...
CVE-2007-2028Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to cause a denial of service (memory consumption) vi...
CVE-2007-1872Cross-site scripting (XSS) vulnerability in toendaCMS 1.5.3 allows remote attackers to inject arbitrary web script or HT...
CVE-2007-1871Cross-site scripting (XSS) vulnerability in chcounter 3.1.3 allows remote attackers to inject arbitrary web script or HT...
CVE-2007-2026The gnu regular expression code in file 4.20 allows context-dependent attackers to cause a denial of service (CPU consum...
CVE-2007-2023USB20.dll in Secustick USB flash drive decouples the authorization and file access routines, which allows local users to...
CVE-2007-2022Adobe Macromedia Flash Player 7 and 9, when used with Opera before 9.20 or Konqueror before 20070613, allows remote atta...
CVE-2007-2024Unrestricted file upload vulnerability in the UpLoad feature (lib/plugin/UpLoad.php) in PhpWiki 1.3.x allows remote atta...
CVE-2007-1748Stack-based buffer overflow in the RPC interface in the Domain Name System (DNS) Server Service in Microsoft Windows 200...
CVE-2007-1743suexec in Apache HTTP Server (httpd) 2.2.3 does not verify combinations of user and group IDs on the command line, which...
CVE-2007-1742suexec in Apache HTTP Server (httpd) 2.2.3 uses a partial comparison for verifying whether the current directory is with...
CVE-2007-1741Multiple race conditions in suexec in Apache HTTP Server (httpd) 2.2.3 between directory and file validation, and their ...
CVE-2007-1999PHP remote file inclusion vulnerability in index.php in Weatimages 1.7.1 and earlier, when weatimages.ini is missing, al...
CVE-2007-2021Multiple PHP remote file inclusion vulnerabilities in Pineapple Technologies Lore 1 allow remote attackers to execute ar...
CVE-2007-2019PHP remote file inclusion vulnerability in init.gallery.php in phpGalleryScript 1.0 allows remote attackers to execute a...
CVE-2007-2018SQL injection vulnerability in msg.php in AlstraSoft Video Share Enterprise allows remote authenticated users to execute...
CVE-2007-2017siteadmin/useredit.php in AlstraSoft Video Share Enterprise does not check authentication, which allows remote attackers...
CVE-2007-2016Cross-site scripting (XSS) vulnerability in mysql/phpinfo.php in phpMyAdmin 2.6.1 allows remote attackers to inject arbi...
CVE-2007-2015PHP remote file inclusion vulnerability in index.php in Request It 1.0b allows remote attackers to execute arbitrary PHP...
CVE-2007-2014PHP remote file inclusion vulnerability in include/blocks/week_events.php in MyNews 4.2.2 allows remote attackers to exe...
CVE-2007-2013Cross-site scripting (XSS) vulnerability in index.php in JEx-Treme Einfacher Passworschutz allows remote attackers to in...
CVE-2007-2012Multiple directory traversal vulnerabilities in MimarSinan CompreXX 4.1 allow remote attackers to create files in arbitr...
CVE-2007-2011Cross-site scripting (XSS) vulnerability in login.php in DeskPro 2.0.1 allows remote attackers to inject arbitrary web s...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now