2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-2033 | — | — | 1.3% | Apr 16, 2007 | Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.81.0 allows remote authenticated users to re... |
| CVE-2007-2032 | — | — | 1.7% | Apr 16, 2007 | Cisco Wireless Control System (WCS) before 4.0.96.0 has a hard-coded FTP username and password for backup operations, wh... |
| CVE-2007-2031 | — | — | 15.3% | Apr 16, 2007 | Buffer overflow in the HTTP proxy service for 3proxy 0.5 to 0.5.3g, and 0.6b-devel before 20070413, might allow remote a... |
| CVE-2007-1997 | — | — | 5.4% | Apr 16, 2007 | Integer signedness error in the (1) cab_unstore and (2) cab_extract functions in libclamav/cab.c in Clam AntiVirus (Clam... |
| CVE-2007-1745 | — | — | 2.3% | Apr 16, 2007 | The chm_decompress_stream function in libclamav/chmunpack.c in Clam AntiVirus (ClamAV) before 0.90.2 leaks file descript... |
| CVE-2007-2041 | — | — | 1.3% | Apr 16, 2007 | Cisco Wireless LAN Controller (WLC) before 4.0.206.0 saves the WLAN ACL configuration with an invalid checksum, which pr... |
| CVE-2007-2040 | — | — | 0.4% | Apr 16, 2007 | Cisco Aironet 1000 Series and 1500 Series Lightweight Access Points before 3.2.185.0, and 4.0.x before 4.0.206.0, have a... |
| CVE-2007-2039 | — | — | 1.2% | Apr 16, 2007 | The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.171.5, 4.0.x before 4.0.206.0, a... |
| CVE-2007-2038 | — | — | 1.0% | Apr 16, 2007 | The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.193.5, 4.0.x before 4.0.206.0, a... |
| CVE-2007-2037 | — | — | 0.9% | Apr 16, 2007 | Cisco Wireless LAN Controller (WLC) before 3.2.116.21, and 4.0.x before 4.0.155.0, allows remote attackers on a local ne... |
| CVE-2007-2030 | — | — | 0.4% | Apr 16, 2007 | lharc.c in lha does not securely create temporary files, which might allow local users to read or write files by creatin... |
| CVE-2007-1748 | — | — | 79.1% | Apr 13, 2007 | Stack-based buffer overflow in the RPC interface in the Domain Name System (DNS) Server Service in Microsoft Windows 200... |
| CVE-2007-1871 | — | — | 1.3% | Apr 13, 2007 | Cross-site scripting (XSS) vulnerability in chcounter 3.1.3 allows remote attackers to inject arbitrary web script or HT... |
| CVE-2007-1873 | — | — | 2.2% | Apr 13, 2007 | Cross-site scripting (XSS) vulnerability in Mephisto 0.7.3 allows remote attackers to inject arbitrary web script or HTM... |
| CVE-2007-2023 | — | — | 0.3% | Apr 13, 2007 | USB20.dll in Secustick USB flash drive decouples the authorization and file access routines, which allows local users to... |
| CVE-2007-2025 | — | — | 2.5% | Apr 13, 2007 | Unrestricted file upload vulnerability in the UpLoad feature (lib/plugin/UpLoad.php) in PhpWiki 1.3.11p1 allows remote a... |
| CVE-2007-2024 | — | — | 3.3% | Apr 13, 2007 | Unrestricted file upload vulnerability in the UpLoad feature (lib/plugin/UpLoad.php) in PhpWiki 1.3.x allows remote atta... |
| CVE-2007-2022 | — | — | 4.9% | Apr 13, 2007 | Adobe Macromedia Flash Player 7 and 9, when used with Opera before 9.20 or Konqueror before 20070613, allows remote atta... |
| CVE-2007-1872 | — | — | 2.0% | Apr 13, 2007 | Cross-site scripting (XSS) vulnerability in toendaCMS 1.5.3 allows remote attackers to inject arbitrary web script or HT... |
| CVE-2007-2028 | — | — | 2.5% | Apr 13, 2007 | Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to cause a denial of service (memory consumption) vi... |
| CVE-2007-2027 | — | — | 0.8% | Apr 13, 2007 | Untrusted search path vulnerability in the add_filename_to_string function in intl/gettext/loadmsgcat.c for Elinks 0.11.... |
| CVE-2007-2026 | — | — | 2.1% | Apr 13, 2007 | The gnu regular expression code in file 4.20 allows context-dependent attackers to cause a denial of service (CPU consum... |
| CVE-2007-1742 | — | — | 0.7% | Apr 13, 2007 | suexec in Apache HTTP Server (httpd) 2.2.3 uses a partial comparison for verifying whether the current directory is with... |
| CVE-2007-1743 | — | — | 0.7% | Apr 13, 2007 | suexec in Apache HTTP Server (httpd) 2.2.3 does not verify combinations of user and group IDs on the command line, which... |
| CVE-2007-1741 | — | — | 0.5% | Apr 13, 2007 | Multiple race conditions in suexec in Apache HTTP Server (httpd) 2.2.3 between directory and file validation, and their ... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now