2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-0938 | — | — | 45.6% | Apr 10, 2007 | Microsoft Content Management Server (MCMS) 2001 SP1 and 2002 SP2 does not properly handle certain characters in a crafte... |
| CVE-2007-0939 | — | — | 16.2% | Apr 10, 2007 | Cross-site scripting (XSS) vulnerability in Microsoft Content Management Server (MCMS) 2001 SP1 and 2002 SP2 allows remo... |
| CVE-2007-1206 | — | — | 2.7% | Apr 10, 2007 | The Virtual DOS Machine (VDM) in the Windows Kernel in Microsoft Windows NT 4.0; 2000 SP4; XP SP2; Server 2003, 2003 SP1... |
| CVE-2007-1205 | — | — | 30.9% | Apr 10, 2007 | Unspecified vulnerability in Microsoft Agent (msagent\agentsvr.exe) in Windows 2000 SP4, XP SP2, and Server 2003, 2003 S... |
| CVE-2007-1209 | — | — | 2.7% | Apr 10, 2007 | Use-after-free vulnerability in the Client/Server Run-time Subsystem (CSRSS) in Microsoft Windows Vista does not properl... |
| CVE-2007-1687 | — | — | 11.1% | Apr 10, 2007 | Multiple buffer overflows in the Internet Pictures Corporation iPIX Image Well ActiveX control (iPIX-ImageWell-ipix.dll)... |
| CVE-2007-1900 | — | — | 2.3% | Apr 10, 2007 | CRLF injection vulnerability in the FILTER_VALIDATE_EMAIL filter in ext/filter in PHP 5.2.0 and 5.2.1 allows context-dep... |
| CVE-2007-1894 | — | — | 3.0% | Apr 9, 2007 | Cross-site scripting (XSS) vulnerability in wp-includes/general-template.php in WordPress before 20070309 allows remote ... |
| CVE-2007-1896 | — | — | 2.0% | Apr 9, 2007 | Directory traversal vulnerability in chat.php in Sky GUNNING MySpeach 3.0.7 and earlier allows remote attackers to inclu... |
| CVE-2007-1897 | — | — | 7.2% | Apr 9, 2007 | SQL injection vulnerability in xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated... |
| CVE-2007-1893 | — | — | 1.2% | Apr 9, 2007 | xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users with the contributor rol... |
| CVE-2007-1895 | — | — | 2.3% | Apr 9, 2007 | PHP remote file inclusion vulnerability in chat.php in Sky GUNNING MySpeach 3.0.7 and earlier, when used with PHP 5, all... |
| CVE-2007-1003 | — | — | 5.2% | Apr 6, 2007 | Integer overflow in ALLOCATE_LOCAL in the ProcXCMiscGetXIDList function in the XC-MISC extension in the X.Org X11 server... |
| CVE-2007-1680 | — | — | 8.4% | Apr 6, 2007 | Stack-based buffer overflow in the createAndJoinConference function in the AudioConf ActiveX control (yacscom.dll) in Ya... |
| CVE-2007-0956 | — | — | 29.8% | Apr 6, 2007 | The telnet daemon (telnetd) in MIT krb5 before 1.6.1 allows remote attackers to bypass authentication and gain system ac... |
| CVE-2007-0957 | — | — | 10.3% | Apr 6, 2007 | Stack-based buffer overflow in the krb5_klog_syslog function in the kadm5 library, as used by the Kerberos administratio... |
| CVE-2007-1216 | — | — | 9.9% | Apr 6, 2007 | Double free vulnerability in the GSS-API library (lib/gssapi/krb5/k5unseal.c), as used by the Kerberos administration da... |
| CVE-2007-1890 | — | — | 7.8% | Apr 6, 2007 | Integer overflow in the msg_receive function in PHP 4 before 4.4.5 and PHP 5 before 5.2.1, on FreeBSD and possibly other... |
| CVE-2007-1889 | — | — | 3.1% | Apr 6, 2007 | Integer signedness error in the _zend_mm_alloc_int function in the Zend Memory Manager in PHP 5.2.0 allows remote attack... |
| CVE-2007-1888 | — | — | 3.5% | Apr 6, 2007 | Buffer overflow in the sqlite_decode_binary function in src/encode.c in SQLite 2, as used by PHP 4.x through 5.x and oth... |
| CVE-2007-1887 | — | — | 4.8% | Apr 6, 2007 | Buffer overflow in the sqlite_decode_binary function in the bundled sqlite library in PHP 4 before 4.4.5 and PHP 5 befor... |
| CVE-2007-1886 | — | — | 1.7% | Apr 6, 2007 | Integer overflow in the str_replace function in PHP 4.4.5 and PHP 5.2.1 allows context-dependent attackers to have an un... |
| CVE-2007-1885 | — | — | 4.2% | Apr 6, 2007 | Integer overflow in the str_replace function in PHP 4 before 4.4.5 and PHP 5 before 5.2.1 allows context-dependent attac... |
| CVE-2007-1884 | — | — | 3.1% | Apr 6, 2007 | Multiple integer signedness errors in the printf function family in PHP 4 before 4.4.5 and PHP 5 before 5.2.1 on 64 bit ... |
| CVE-2007-1883 | — | — | 1.3% | Apr 6, 2007 | PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows context-dependent attackers to read arbitrary memory locations vi... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now