2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-1043 | — | — | 8.1% | Feb 21, 2007 | Ezboo webstats, possibly 3.0.3, allows remote attackers to bypass authentication and gain access via a direct request to... |
| CVE-2007-1042 | — | — | 1.4% | Feb 21, 2007 | Directory traversal vulnerability in news.php in Xpression News (X-News) 1.0.1, when magic_quotes_gpc is disabled, allow... |
| CVE-2007-1041 | — | — | 6.9% | Feb 21, 2007 | Multiple stack-based buffer overflows in S&H Computer Systems News Rover 12.1 Rev 1 allow remote attackers to execute ar... |
| CVE-2007-1040 | — | — | 3.0% | Feb 21, 2007 | Directory traversal vulnerability in archives.php in Xpression News (X-News) 1.0.1 allows remote attackers to include ar... |
| CVE-2007-1039 | — | — | 1.5% | Feb 21, 2007 | Unspecified vulnerability in Peanut Knowledge Base (PeanutKB) 0.0.3 and earlier has unknown impact and attack vectors. |
| CVE-2007-1038 | — | — | 1.4% | Feb 21, 2007 | Shemes.com Grabit 1.5.3, and possibly earlier, allows remote attackers to cause a denial of service (application crash) ... |
| CVE-2007-1037 | — | — | 5.5% | Feb 21, 2007 | Stack-based buffer overflow in News File Grabber 4.1.0.1 and earlier allows remote attackers to execute arbitrary code v... |
| CVE-2007-1070 | — | — | 73.8% | Feb 21, 2007 | Multiple stack-based buffer overflows in Trend Micro ServerProtect for Windows and EMC 5.58, and for Network Appliance F... |
| CVE-2007-1036 | — | — | 81.8% | Feb 21, 2007 | The default configuration of JBoss does not restrict access to the (1) console and (2) web management interfaces, which ... |
| CVE-2007-1035 | — | — | 1.6% | Feb 21, 2007 | Unspecified vulnerability in certain demonstration scripts in getID3 1.7.1, as used in the Mediafield and Audio modules ... |
| CVE-2007-1034 | — | — | 1.5% | Feb 21, 2007 | SQL injection vulnerability in the category file in modules.php in the Emporium 2.3.0 and earlier module for PHP-Nuke al... |
| CVE-2007-1033 | — | — | 1.4% | Feb 21, 2007 | Unspecified vulnerability in the Secure site 4.7.x-1.x-dev and 5.x-1.x-dev module for Drupal allows remote attackers to ... |
| CVE-2007-1032 | — | — | 1.2% | Feb 21, 2007 | Unspecified vulnerability in phpMyFAQ 1.6.9 and earlier, when register_globals is enabled, allows remote attackers to "g... |
| CVE-2007-1031 | — | — | 1.9% | Feb 21, 2007 | Directory traversal vulnerability in include/db_conn.php in SpoonLabs Vivvo Article Management CMS 3.4 allows remote att... |
| CVE-2007-1030 | — | — | 3.0% | Feb 21, 2007 | Niels Provos libevent 1.2 and 1.2a allows remote attackers to cause a denial of service (infinite loop) via a DNS respon... |
| CVE-2007-1029 | — | — | 7.4% | Feb 21, 2007 | Stack-based buffer overflow in the Connect method in the IMAP4 component in Quiksoft EasyMail Objects before 6.5 allows ... |
| CVE-2007-1028 | — | — | 1.2% | Feb 21, 2007 | Cross-site scripting (XSS) vulnerability in the Barry Jaspan Image Pager 4.7.x-1.x-dev and 5.x-1.x-dev before 2007-02-08... |
| CVE-2007-1027 | — | — | 0.3% | Feb 21, 2007 | Certain setuid DB2 binaries in IBM DB2 before 9 Fix Pack 2 for Linux and Unix allow local users to overwrite arbitrary f... |
| CVE-2007-1026 | — | — | 1.7% | Feb 21, 2007 | SQL injection vulnerability in view.php in XLAtunes 0.1 and earlier allows remote attackers to execute arbitrary SQL com... |
| CVE-2007-1025 | — | — | 2.7% | Feb 21, 2007 | PHP remote file inclusion vulnerability in inc/functions_inc.php in VS-Link-Partner 2.1 and earlier allows remote attack... |
| CVE-2007-1024 | — | — | 4.9% | Feb 21, 2007 | PHP remote file inclusion vulnerability in include.php in Meganoide's news 1.1.1 allows remote attackers to execute arbi... |
| CVE-2007-1023 | — | — | 1.0% | Feb 21, 2007 | SQL injection vulnerability in pop_profile.asp in Snitz Forums 2000 3.1 SR4 allows remote attackers to execute arbitrary... |
| CVE-2007-1022 | — | — | 1.0% | Feb 21, 2007 | SQL injection vulnerability in h_goster.asp in Turuncu Portal 1.0 allows remote attackers to execute arbitrary SQL comma... |
| CVE-2007-1021 | — | — | 1.6% | Feb 21, 2007 | SQL injection vulnerability in inc_listnews.asp in CodeAvalanche News 1.x allows remote attackers to execute arbitrary S... |
| CVE-2007-1020 | — | — | 4.8% | Feb 21, 2007 | Cross-site scripting (XSS) vulnerability in index.php in CedStat 1.31 allows remote attackers to inject arbitrary web sc... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now