2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-6416——The copy_to_user function in the PAL emulation functionality for Xen 3.1.2 and earlier, when running on ia64 systems, al...
CVE-2007-4473——Gesytec Easylon OPC Server before 2.3.44 does not properly validate server handles, which allows remote attackers to exe...
CVE-2007-6389——The notify feature in GNOME screensaver (gnome-screensaver) 2.20.0 might allow local users to read the clipboard content...
CVE-2007-6390——Cross-site request forgery (CSRF) vulnerability in the mycalendar plugin before 0.13 for Serendipity allows remote attac...
CVE-2007-6391——SQL injection vulnerability in patch/comments.php in SH-News 3.0 allows remote attackers to execute arbitrary SQL comman...
CVE-2007-6392——SQL injection vulnerability in DWdirectory 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via...
CVE-2007-6393——SQL injection vulnerability in albums.php in Ace Image Hosting Script allows remote authenticated users to execute arbit...
CVE-2007-6394——SQL injection vulnerability in index.php in Content Injector 1.53 allows remote attackers to execute arbitrary SQL comma...
CVE-2007-6395——Flat PHP Board 1.2 and earlier stores sensitive information under the web root with insufficient access control, which a...
CVE-2007-6396——Direct static code injection vulnerability in index.php in Flat PHP Board 1.2 and earlier allows remote attackers to inj...
CVE-2007-6397——Multiple directory traversal vulnerabilities in index.php in Flat PHP Board 1.2 and earlier allow remote attackers to (1...
CVE-2007-6398——Flat PHP Board 1.2 and earlier allows remote attackers to bypass authentication and obtain limited access to an arbitrar...
CVE-2007-6399——index.php in Flat PHP Board 1.2 and earlier allows remote authenticated users to obtain the password for the current use...
CVE-2007-6400——Directory traversal vulnerability in download_file.php in PolDoc CMS (aka PDDMS) 0.96 allows remote attackers to read ar...
CVE-2007-6401——Stack-based buffer overflow in mplayer2.exe in Microsoft Windows Media Player (WMP) 6.4, when used with the 3ivx 4.5.1 o...
CVE-2007-6402——Stack-based buffer overflow in mplayerc.exe in Media Player Classic (MPC) 6.4.9, when used with the 3ivx 4.5.1 or 5.0.1 ...
CVE-2007-6403——Stack-based buffer overflow in Nullsoft Winamp 5.32 allows user-assisted remote attackers to execute arbitrary code via ...
CVE-2007-6404——Directory traversal vulnerability in Sergey Lyubka Simple HTTPD (shttpd) 1.38 and earlier on Windows allows remote attac...
CVE-2007-6405——Sergey Lyubka Simple HTTPD (shttpd) 1.38 and earlier on Windows allows remote attackers to download arbitrary CGI progra...
CVE-2007-6406——Multiple cross-site scripting (XSS) vulnerabilities in CA (formerly Computer Associates) eTrust Threat Management Consol...
CVE-2007-6407——Multiple cross-site scripting (XSS) vulnerabilities in IBM Tivoli Provisioning Manager Express allow remote attackers to...
CVE-2007-6408——IBM Tivoli Provisioning Manager Express provides unspecified information in error messages when (1) attempted duplicatio...
CVE-2007-6409——The gg protocol handler in Gadu-Gadu, when this product is installed but not running, does not properly handle the skin ...
CVE-2007-6410——Gadu-Gadu does not properly perform protocol handling, which allows remote attackers to conduct cross-site request forge...
CVE-2007-6411——Multiple buffer overflows in the HandleEmotsConfig function in the GG Client in Gadu-Gadu 7.7 Build 3669 allow user-assi...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now