2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-6407Multiple cross-site scripting (XSS) vulnerabilities in IBM Tivoli Provisioning Manager Express allow remote attackers to...
CVE-2007-6408IBM Tivoli Provisioning Manager Express provides unspecified information in error messages when (1) attempted duplicatio...
CVE-2007-6409The gg protocol handler in Gadu-Gadu, when this product is installed but not running, does not properly handle the skin ...
CVE-2007-6410Gadu-Gadu does not properly perform protocol handling, which allows remote attackers to conduct cross-site request forge...
CVE-2007-6411Multiple buffer overflows in the HandleEmotsConfig function in the GG Client in Gadu-Gadu 7.7 Build 3669 allow user-assi...
CVE-2007-6412Direct static code injection vulnerability in wiki/index.php in Bitweaver 2.0.0 and earlier, when comments are enabled, ...
CVE-2007-6381SQL injection vulnerability in the indexed_search system extension in TYPO3 3.x, 4.0 through 4.0.7, and 4.1 through 4.1....
CVE-2007-6382The Event Dispatch Thread in Robocode before 1.5.1 allows remote attackers to execute arbitrary Java code by using a rob...
CVE-2007-6383The DAV component in Chandler Server (Cosmo) before 0.10.1 does not check resource creation permissions, which allows re...
CVE-2007-6384Unspecified vulnerability in the Image Converter functionality in BEA WebLogic Mobility Server 3.3, 3.5, and 3.6 through...
CVE-2007-6385The proxy server in Kerio WinRoute Firewall before 6.4.1 does not properly enforce authentication for HTTPS pages, which...
CVE-2007-6386Stack-based buffer overflow in PccScan.dll before build 1451 in Trend Micro AntiVirus plus AntiSpyware 2008, Internet Se...
CVE-2007-6387Multiple stack-based buffer overflows in the awApi4.AnswerWorks.1 ActiveX control in awApi4.dll 4.0.0.42, as used by Van...
CVE-2007-6338SQL injection vulnerability in userlogin.jsp in Trivantis CourseMill Enterprise Learning Management System 4.1 SP4 allow...
CVE-2007-6357Stack-based buffer overflow in Microsoft Office Access allows remote, user-assisted attackers to execute arbitrary code ...
CVE-2007-6358pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwrite arbitrary files via a symlink attack ...
CVE-2007-6359The cs_validate_page function in bsd/kern/ubc_subr.c in the xnu kernel 1228.0 and earlier in Apple Mac OS X 10.5.1 allow...
CVE-2007-6360Unspecified vulnerability in the Sun eXtended System Control Facility (XSCF) Control Package (XCP) firmware before 1050 ...
CVE-2007-6361Gekko 0.8.2 and earlier stores sensitive information under the web root with possibly insufficient access control, which...
CVE-2007-6362SQL injection vulnerability in index.php in the RSGallery (com_rsgallery) 2.0 beta 5 and earlier component for Mambo and...
CVE-2007-6363IBM Tivoli Netcool Security Manager 1.3.0 before Interim Fix 1, when using Active Directory (AD) LDAP authentication, al...
CVE-2007-6364Cross-site scripting (XSS) vulnerability in modificarPerfil.php in JLMForo System allows remote authenticated users to i...
CVE-2007-6365Cross-site scripting (XSS) vulnerability in modules/ecal/display.php in the Event Calendar in bcoos 1.0.10 allows remote...
CVE-2007-6366Multiple SQL injection vulnerabilities in SineCMS 2.3.4 and earlier allow remote attackers to execute arbitrary SQL comm...
CVE-2007-6367Multiple cross-site scripting (XSS) vulnerabilities in the guestbook in SineCMS 2.3.4 and earlier allow remote attackers...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now