2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-6416The copy_to_user function in the PAL emulation functionality for Xen 3.1.2 and earlier, when running on ia64 systems, al...
CVE-2007-4473Gesytec Easylon OPC Server before 2.3.44 does not properly validate server handles, which allows remote attackers to exe...
CVE-2007-6389The notify feature in GNOME screensaver (gnome-screensaver) 2.20.0 might allow local users to read the clipboard content...
CVE-2007-6390Cross-site request forgery (CSRF) vulnerability in the mycalendar plugin before 0.13 for Serendipity allows remote attac...
CVE-2007-6391SQL injection vulnerability in patch/comments.php in SH-News 3.0 allows remote attackers to execute arbitrary SQL comman...
CVE-2007-6392SQL injection vulnerability in DWdirectory 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via...
CVE-2007-6393SQL injection vulnerability in albums.php in Ace Image Hosting Script allows remote authenticated users to execute arbit...
CVE-2007-6394SQL injection vulnerability in index.php in Content Injector 1.53 allows remote attackers to execute arbitrary SQL comma...
CVE-2007-6395Flat PHP Board 1.2 and earlier stores sensitive information under the web root with insufficient access control, which a...
CVE-2007-6396Direct static code injection vulnerability in index.php in Flat PHP Board 1.2 and earlier allows remote attackers to inj...
CVE-2007-6397Multiple directory traversal vulnerabilities in index.php in Flat PHP Board 1.2 and earlier allow remote attackers to (1...
CVE-2007-6398Flat PHP Board 1.2 and earlier allows remote attackers to bypass authentication and obtain limited access to an arbitrar...
CVE-2007-6399index.php in Flat PHP Board 1.2 and earlier allows remote authenticated users to obtain the password for the current use...
CVE-2007-6400Directory traversal vulnerability in download_file.php in PolDoc CMS (aka PDDMS) 0.96 allows remote attackers to read ar...
CVE-2007-6401Stack-based buffer overflow in mplayer2.exe in Microsoft Windows Media Player (WMP) 6.4, when used with the 3ivx 4.5.1 o...
CVE-2007-6402Stack-based buffer overflow in mplayerc.exe in Media Player Classic (MPC) 6.4.9, when used with the 3ivx 4.5.1 or 5.0.1 ...
CVE-2007-6403Stack-based buffer overflow in Nullsoft Winamp 5.32 allows user-assisted remote attackers to execute arbitrary code via ...
CVE-2007-6404Directory traversal vulnerability in Sergey Lyubka Simple HTTPD (shttpd) 1.38 and earlier on Windows allows remote attac...
CVE-2007-6405Sergey Lyubka Simple HTTPD (shttpd) 1.38 and earlier on Windows allows remote attackers to download arbitrary CGI progra...
CVE-2007-6406Multiple cross-site scripting (XSS) vulnerabilities in CA (formerly Computer Associates) eTrust Threat Management Consol...
CVE-2007-6407Multiple cross-site scripting (XSS) vulnerabilities in IBM Tivoli Provisioning Manager Express allow remote attackers to...
CVE-2007-6408IBM Tivoli Provisioning Manager Express provides unspecified information in error messages when (1) attempted duplicatio...
CVE-2007-6409The gg protocol handler in Gadu-Gadu, when this product is installed but not running, does not properly handle the skin ...
CVE-2007-6410Gadu-Gadu does not properly perform protocol handling, which allows remote attackers to conduct cross-site request forge...
CVE-2007-6411Multiple buffer overflows in the HandleEmotsConfig function in the GG Client in Gadu-Gadu 7.7 Build 3669 allow user-assi...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now