2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-1652 | — | — | 1.3% | Mar 24, 2007 | OpenID allows remote attackers to forcibly log a user into an OpenID enabled site, divulge the user's personal informati... |
| CVE-2007-1651 | — | — | 1.4% | Mar 24, 2007 | Cross-site request forgery (CSRF) vulnerability in OpenID allows remote attackers to restore the login session of a user... |
| CVE-2007-1650 | — | — | 2.5% | Mar 24, 2007 | pcapsipdump.cpp in pcapsipdump before 0.1.3 allows remote attackers to cause a denial of service (application crash) via... |
| CVE-2007-1649 | — | — | 7.2% | Mar 24, 2007 | PHP 5.2.1 allows context-dependent attackers to read portions of heap memory by executing certain scripts with a seriali... |
| CVE-2007-1648 | — | — | 7.1% | Mar 24, 2007 | 0irc 1345 build 20060823 allows remote attackers to cause a denial of service (application crash) by operating an IRC se... |
| CVE-2007-1647 | — | — | 3.3% | Mar 24, 2007 | Moodle 1.5.2 and earlier stores sensitive information under the web root with insufficient access control, and provides ... |
| CVE-2007-1646 | — | — | 1.0% | Mar 24, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in SubHub 2.3.0 allow remote attackers to inject arbitrary web scrip... |
| CVE-2007-1645 | — | — | 14.2% | Mar 24, 2007 | Buffer overflow in FutureSoft TFTP Server 2000 on Microsoft Windows 2000 SP4 allows remote attackers to execute arbitrar... |
| CVE-2007-1644 | — | — | 32.6% | Mar 24, 2007 | The dynamic DNS update mechanism in the DNS Server service on Microsoft Windows does not properly authenticate clients i... |
| CVE-2007-1643 | — | — | 10.7% | Mar 24, 2007 | Multiple PHP remote file inclusion vulnerabilities in LAN Management System (LMS) 1.8.9 Vala and earlier allow remote at... |
| CVE-2007-1639 | — | — | 2.0% | Mar 23, 2007 | Unrestricted file upload vulnerability in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allows remote authenticate... |
| CVE-2007-1638 | — | — | 1.7% | Mar 23, 2007 | Multiple cross-site request forgery (CSRF) vulnerabilities in the check_csrftoken function in lib/lib.inc.php in PHProje... |
| CVE-2007-1641 | — | — | 1.0% | Mar 23, 2007 | SQL injection vulnerability in index.php in PortailPHP 2.0 allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2007-1640 | — | — | 4.7% | Mar 23, 2007 | Multiple PHP remote file inclusion vulnerabilities in ClassWeb 2.03 and earlier allow remote attackers to execute arbitr... |
| CVE-2007-1636 | — | — | 2.9% | Mar 23, 2007 | Directory traversal vulnerability in index.php in RoseOnlineCMS 3 B1 allows remote attackers to include arbitrary files ... |
| CVE-2007-1634 | — | — | 1.0% | Mar 23, 2007 | Variable extraction vulnerability in grab_globals.php in Net Portal Dynamic System (NPDS) 5.10 and earlier allows remote... |
| CVE-2007-1637 | — | — | 5.6% | Mar 23, 2007 | Multiple buffer overflows in the IMAILAPILib ActiveX control (IMailAPI.dll) in Ipswitch IMail Server before 2006.2 allow... |
| CVE-2007-1635 | — | — | 2.8% | Mar 23, 2007 | Static code injection vulnerability in admin/settings.php in Net Portal Dynamic System (NPDS) 5.10 and earlier allows re... |
| CVE-2007-1625 | — | — | 1.1% | Mar 23, 2007 | Cross-site scripting (XSS) vulnerability in save_entry.php in realGuestbook 5.01 allows remote attackers to inject arbit... |
| CVE-2007-1633 | — | — | 2.9% | Mar 23, 2007 | Directory traversal vulnerability in bbcode_ref.php in the Giorgio Ciranni Splatt Forum 4.0 RC1 module for PHP-Nuke allo... |
| CVE-2007-1632 | — | — | 1.2% | Mar 23, 2007 | Unspecified vulnerability in TYPOlight webCMS before 2.2 Build 5 has unknown impact and attack vectors related to a "maj... |
| CVE-2007-1631 | — | — | 2.2% | Mar 23, 2007 | PHP remote file inclusion vulnerability in signup.php in CLBOX 1.01 allows remote attackers to execute arbitrary PHP cod... |
| CVE-2007-1630 | — | — | 1.2% | Mar 23, 2007 | SQL injection vulnerability in default.asp in ActiveWebSoftwares Active Link Engine allows remote attackers to execute a... |
| CVE-2007-1629 | — | — | 1.0% | Mar 23, 2007 | SQL injection vulnerability in default.asp in ActiveWebSoftwares Active Photo Gallery allows remote attackers to execute... |
| CVE-2007-1628 | — | — | 5.0% | Mar 23, 2007 | Multiple PHP remote file inclusion vulnerabilities in Study planner (Studiewijzer) 0.15 and earlier, when register_globa... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now