2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-0955The NTLM_UnPack_Type3 function in MENTLM.dll in MailEnable Professional 2.35 and earlier allows remote attackers to caus...
CVE-2007-0954MOHA Chat 0.1b7 and earlier does not require authentication for use of the plug in API, which has unknown impact and att...
CVE-2007-0952Multiple cross-site scripting (XSS) vulnerabilities in Scriptsez.net Virtual Calendar allow remote attackers to inject a...
CVE-2007-0951SQL injection vulnerability in listmain.asp in Fullaspsite ASP Hosting Site allows remote attackers to execute arbitrary...
CVE-2007-0950Cross-site scripting (XSS) vulnerability in listmain.asp in Fullaspsite ASP Hosting Site allows remote attackers to inje...
CVE-2007-0922Cross-site scripting (XSS) vulnerability in buscador/buscador.htm in Portal Search allows remote attackers to inject arb...
CVE-2007-0919Directory traversal vulnerability in Nickolas Grigoriadis Mini Web server (MiniWebsvr) 0.0.6 allows remote attackers to ...
CVE-2007-0920SQL injection vulnerability in philboard_forum.asp in Philboard 1.14 and earlier allows remote attackers to execute arbi...
CVE-2007-0921Portal Search allows remote attackers to redirect a URL to an arbitrary web site by placing the URL in the query string ...
CVE-2007-0932The (1) Aruba Mobility Controllers 200, 600, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 do ...
CVE-2007-0931Heap-based buffer overflow in the management interfaces in (1) Aruba Mobility Controllers 200, 800, 2400, and 6000 and (...
CVE-2007-0930Variable extract vulnerability in Apache Stats before 0.0.3beta allows attackers to modify arbitrary variables and condu...
CVE-2007-0929Directory traversal vulnerability in php rrd browser before 0.2.1 allows remote attackers to read arbitrary files via "....
CVE-2007-0928Virtual Calendar stores sensitive information under the web root with insufficient access control, which allows remote a...
CVE-2007-0927Heap-based buffer overflow in uTorrent 1.6 allows remote attackers to execute arbitrary code via a torrent file with a c...
CVE-2007-0926The dologin function in guestbook.php in KvGuestbook 1.0 Beta allows remote attackers to gain administrative privileges,...
CVE-2007-0925Cross-site scripting (XSS) vulnerability in search/SearchResults.aspx in Community Server allows remote attackers to inj...
CVE-2007-0924Till Gerken phpPolls 1.0.3 allows remote attackers to bypass authentication and perform certain administrative actions v...
CVE-2007-0923buscador/buscador.htm in Portal Search allows remote attackers to obtain sensitive information (business logic) via a qu...
CVE-2007-0917The Intrusion Prevention System (IPS) feature for Cisco IOS 12.4XE to 12.3T allows remote attackers to bypass IPS signat...
CVE-2007-0918The ATOMIC.TCP signature engine in the Intrusion Prevention System (IPS) feature for Cisco IOS 12.4XA, 12.3YA, 12.3T, an...
CVE-2007-0916Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport functionality in HP-UX B.11.11 and ...
CVE-2007-0915Distributed SLS daemon (SLSd) on HP-UX B.11.11 allows remote attackers to overwrite arbitrary files and gain privileges ...
CVE-2007-0914Race condition in the TCP subsystem for Solaris 10 allows remote attackers to cause a denial of service (system panic) v...
CVE-2007-0913Unspecified vulnerability in Microsoft Powerpoint allows remote user-assisted attackers to execute arbitrary code via un...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now