2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-1678Cross-site scripting (XSS) vulnerability in the Fizzle 0.5 extension for Firefox allows remote attackers to inject arbit...
CVE-2007-1667Multiple integer overflows in (1) the XGetPixel function in ImUtil.c in X.Org libx11 before 1.0.3, and (2) XInitImage fu...
CVE-2007-1465Stack-based buffer overflow in dproxy.c for dproxy 0.1 through 0.5 allows remote attackers to execute arbitrary code via...
CVE-2007-1666The processor_request function in the debugger server for DataRescue IDA Pro 5.0 and 5.1 does not verify that authentica...
CVE-2007-1658Windows Mail in Microsoft Windows Vista might allow user-assisted remote attackers to execute certain programs via a lin...
CVE-2007-1657Stack-based buffer overflow in the file_compress function in minigzip (Modules/zlib) in Python 2.5 allows context-depend...
CVE-2007-1655Buffer overflow in the fun_ladd function in funmath.cpp in TinyMUX before 20070126 might allow remote attackers to cause...
CVE-2007-1654Buffer overflow in the Ne7sshSftp::addOpenHandle function in ne7ssh_sftp.cpp in NetSieben SSH Library (ne7ssh) before 1....
CVE-2007-1653GlowWorm FW before 1.5.3b4 allows remote attackers to cause a denial of service (kernel panic) via certain DNS responses...
CVE-2007-1652OpenID allows remote attackers to forcibly log a user into an OpenID enabled site, divulge the user's personal informati...
CVE-2007-1651Cross-site request forgery (CSRF) vulnerability in OpenID allows remote attackers to restore the login session of a user...
CVE-2007-1650pcapsipdump.cpp in pcapsipdump before 0.1.3 allows remote attackers to cause a denial of service (application crash) via...
CVE-2007-1649PHP 5.2.1 allows context-dependent attackers to read portions of heap memory by executing certain scripts with a seriali...
CVE-2007-16480irc 1345 build 20060823 allows remote attackers to cause a denial of service (application crash) by operating an IRC se...
CVE-2007-1647Moodle 1.5.2 and earlier stores sensitive information under the web root with insufficient access control, and provides ...
CVE-2007-1646Multiple cross-site scripting (XSS) vulnerabilities in SubHub 2.3.0 allow remote attackers to inject arbitrary web scrip...
CVE-2007-1645Buffer overflow in FutureSoft TFTP Server 2000 on Microsoft Windows 2000 SP4 allows remote attackers to execute arbitrar...
CVE-2007-1644The dynamic DNS update mechanism in the DNS Server service on Microsoft Windows does not properly authenticate clients i...
CVE-2007-1642Unspecified vulnerability in ManageEngine Firewall Analyzer allows remote authenticated users to "access any common file...
CVE-2007-1643Multiple PHP remote file inclusion vulnerabilities in LAN Management System (LMS) 1.8.9 Vala and earlier allow remote at...
CVE-2007-1656Multiple SQL injection vulnerabilities in index.php in Katalog Plyt Audio 1.0 and earlier allow remote attackers to exec...
CVE-2007-1638Multiple cross-site request forgery (CSRF) vulnerabilities in the check_csrftoken function in lib/lib.inc.php in PHProje...
CVE-2007-1641SQL injection vulnerability in index.php in PortailPHP 2.0 allows remote attackers to execute arbitrary SQL commands via...
CVE-2007-1640Multiple PHP remote file inclusion vulnerabilities in ClassWeb 2.03 and earlier allow remote attackers to execute arbitr...
CVE-2007-1639Unrestricted file upload vulnerability in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allows remote authenticate...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now