2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-1874Adobe ColdFusion MX 7 for Linux and Solaris uses insecure permissions for certain scripts and directories, which allows ...
CVE-2007-1363Multiple SQL injection vulnerabilities in DropAFew before 0.2.1 allow remote attackers to execute arbitrary SQL commands...
CVE-2007-1364DropAFew before 0.2.1 does not require authorization for certain privileged actions, which allows remote attackers to (1...
CVE-2007-1970Mozilla Firefox does not warn the user about HTTP elements on an HTTPS page when the HTTP elements are dynamically creat...
CVE-2007-1971SQL injection vulnerability in fotokategori.asp in Gazi Okul Sitesi 2007 allows remote attackers to execute arbitrary SQ...
CVE-2007-1969Cross-site scripting (XSS) vulnerability in admin/modify.php in Sam Crew MyBlog remote attackers to inject arbitrary web...
CVE-2007-1968PHP remote file inclusion vulnerability in games.php in Sam Crew MyBlog, possibly 1.0 through 1.6, allows remote attacke...
CVE-2007-1967PHP remote file inclusion vulnerability in index.php in stat12 allows remote attackers to execute arbitrary PHP code via...
CVE-2007-1965Multiple cross-site scripting (XSS) vulnerabilities in eXV2 CMS 2.0.4.3 and earlier allow remote attackers to inject arb...
CVE-2007-1964member.php in MyBB (aka MyBulletinBoard), when debug mode is available, allows remote authenticated users to change the ...
CVE-2007-1963SQL injection vulnerability in the create_session function in class_session.php in MyBB (aka MyBulletinBoard) 1.2.3 and ...
CVE-2007-1962SQL injection vulnerability in index.php in the WF-Snippets 1.02 and earlier module for XOOPS allows remote attackers to...
CVE-2007-1961PHP remote file inclusion vulnerability in mutant_functions.php in the Mutant 0.9.2 portal for phpBB 2.2 allows remote a...
CVE-2007-1960SQL injection vulnerability in visit.php in the Rha7 Downloads (rha7downloads) 1.0 module for XOOPS, and possibly other ...
CVE-2007-1959Unspecified vulnerability in the process_cmdent function in command.cpp in TinyMUX before 2.4 has unknown impact and att...
CVE-2007-1958Buffer overflow in TinyMUX before 2.4 allows attackers to cause a denial of service via unspecified vectors related to "...
CVE-2007-1966CRITICAL9.1Session fixation vulnerability in eXV2 CMS 2.0.4.3 and earlier allows remote attackers to hijack web sessions by setting...
CVE-2007-1942Integer overflow in FastStone Image Viewer 2.9 allows context-dependent attackers to cause a denial of service and possi...
CVE-2007-1946Integer overflow in Windows Explorer in Microsoft Windows XP SP1 might allow user-assisted remote attackers to cause a d...
CVE-2007-1947Cross-zone scripting vulnerability in the DOM templates (domplates) used by the console.log function in the Firebug exte...
CVE-2007-1945Unspecified vulnerability in the Servlet Engine/Web Container in IBM WebSphere Application Server (WAS) before 6.1.0.7 h...
CVE-2007-1948Buffer overflow in IrfanView 3.99 allows context-dependent attackers to cause a denial of service and possibly execute a...
CVE-2007-1949Session fixation vulnerability in WebBlizzard CMS allows remote attackers to hijack web sessions by setting a PHPSESSID ...
CVE-2007-1957Multiple PHP remote file inclusion vulnerabilities in Guernion Sylvain Portail Web Php (aka Gsylvain35 Portail Web, PwP)...
CVE-2007-1943Integer overflow in ACDSee Photo Manager 9.0 allows context-dependent attackers to cause a denial of service and possibl...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now