2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-1817 | — | — | 2.2% | Apr 2, 2007 | SQL injection vulnerability in index.php in the Lykos Reviews (lykos_reviews) 1.00 module for Xoops allows remote attack... |
| CVE-2007-1796 | — | — | 1.4% | Apr 2, 2007 | Multiple unspecified vulnerabilities in JCcorp URLshrink before 1.3.2 have unspecified attack vectors and impact. |
| CVE-2007-1793 | — | — | 1.7% | Apr 2, 2007 | SPBBCDrv.sys in Symantec Norton Personal Firewall 2006 9.1.0.33 and 9.1.1.7 does not validate certain arguments before b... |
| CVE-2007-1794 | — | — | 4.3% | Apr 2, 2007 | The Javascript engine in Mozilla 1.7 and earlier on Sun Solaris 8, 9, and 10 might allow remote attackers to execute arb... |
| CVE-2007-1799 | — | — | 2.3% | Apr 2, 2007 | Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.3 only checks for the ".." string, which allows ... |
| CVE-2007-1798 | — | — | 0.5% | Apr 2, 2007 | Buffer overflow in the drmgr command in IBM AIX 5.2 and 5.3 allows local users to cause a denial of service (crash) and ... |
| CVE-2007-1795 | — | — | 3.4% | Apr 2, 2007 | JCcorp URLshrink 1.3.1 allows remote attackers to execute arbitrary PHP code via the email address field in an HTML link... |
| CVE-2007-1797 | — | — | 3.5% | Apr 2, 2007 | Multiple integer overflows in ImageMagick before 6.3.3-5 allow remote attackers to execute arbitrary code via (1) a craf... |
| CVE-2007-1790 | — | — | 7.0% | Mar 31, 2007 | Multiple PHP remote file inclusion vulnerabilities in Kaqoo Auction Software Free Edition allow remote attackers to exec... |
| CVE-2007-1791 | — | — | 1.0% | Mar 31, 2007 | SQL injection vulnerability in wall.php in Picture-Engine 1.2.0 and earlier allows remote attackers to execute arbitrary... |
| CVE-2007-1787 | — | — | 4.9% | Mar 31, 2007 | Multiple PHP remote file inclusion vulnerabilities in lib/timesheet.class.php in Softerra Time-Assistant 6.2 and earlier... |
| CVE-2007-1788 | — | — | 1.3% | Mar 31, 2007 | Flyspray 0.9.9, when output_buffering is disabled or "set to a low value," allows remote attackers to bypass authenticat... |
| CVE-2007-1789 | — | — | 1.2% | Mar 31, 2007 | Flyspray 0.9.9 allows remote attackers to obtain sensitive information (private project summaries) via direct requests. |
| CVE-2007-1786 | — | — | 1.2% | Mar 31, 2007 | SQL injection vulnerability in Hitachi Collaboration - Online Community Management 01-00 through 01-30, as used in Group... |
| CVE-2007-1784 | — | — | 3.5% | Mar 31, 2007 | The JNILoader ActiveX control (STJNILoader.ocx) 3.1.0.26 in IBM Lotus Notes Sametime before 7.5 allows remote attackers ... |
| CVE-2007-1785 | — | — | 15.4% | Mar 31, 2007 | The RPC service in mediasvr.exe in CA BrightStor ARCserve Backup 11.5 SP2 build 4237 allows remote attackers to execute ... |
| CVE-2007-0038 | — | — | 72.7% | Mar 30, 2007 | Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack... |
| CVE-2007-1781 | — | — | 0.3% | Mar 30, 2007 | Minna De Office 1.x and 2.x does not properly restrict user access to certain privileged actions, which allows local use... |
| CVE-2007-1780 | — | — | 1.2% | Mar 30, 2007 | Cross-site scripting (XSS) vulnerability in the DHT shell (owdhtshell) in Overlay Weaver 0.5.9 to 0.5.11, when invoked w... |
| CVE-2007-1782 | — | — | 0.3% | Mar 30, 2007 | CruiseWorks 1.09e and earlier does not properly restrict user access to certain privileged actions, which allows local u... |
| CVE-2007-1777 | — | — | 15.3% | Mar 30, 2007 | Integer overflow in the zip_read_entry function in PHP 4 before 4.4.5 allows remote attackers to execute arbitrary code ... |
| CVE-2007-1768 | — | — | 1.1% | Mar 30, 2007 | Cross-site scripting (XSS) vulnerability in app/helpers/application_helper.rb in Mephisto 0.7.3 and Mephisto Edge 200703... |
| CVE-2007-1770 | — | — | 16.7% | Mar 30, 2007 | Buffer overflow in the ArcSDE service (giomgr) in Environmental Systems Research Institute (ESRI) ArcGIS before 9.2 Serv... |
| CVE-2007-1771 | — | — | 4.7% | Mar 30, 2007 | PHP remote file inclusion vulnerability in manage/javascript/formjavascript.php in Ay System Solutions Web Content Syste... |
| CVE-2007-1772 | — | — | 2.9% | Mar 30, 2007 | The FTP service in HP JetDirect print servers allows remote attackers to cause a denial of service (engine crash) via a ... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now