2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-6407——Multiple cross-site scripting (XSS) vulnerabilities in IBM Tivoli Provisioning Manager Express allow remote attackers to...
CVE-2007-6408——IBM Tivoli Provisioning Manager Express provides unspecified information in error messages when (1) attempted duplicatio...
CVE-2007-6409——The gg protocol handler in Gadu-Gadu, when this product is installed but not running, does not properly handle the skin ...
CVE-2007-6410——Gadu-Gadu does not properly perform protocol handling, which allows remote attackers to conduct cross-site request forge...
CVE-2007-6411——Multiple buffer overflows in the HandleEmotsConfig function in the GG Client in Gadu-Gadu 7.7 Build 3669 allow user-assi...
CVE-2007-6412——Direct static code injection vulnerability in wiki/index.php in Bitweaver 2.0.0 and earlier, when comments are enabled, ...
CVE-2007-6381——SQL injection vulnerability in the indexed_search system extension in TYPO3 3.x, 4.0 through 4.0.7, and 4.1 through 4.1....
CVE-2007-6382——The Event Dispatch Thread in Robocode before 1.5.1 allows remote attackers to execute arbitrary Java code by using a rob...
CVE-2007-6383——The DAV component in Chandler Server (Cosmo) before 0.10.1 does not check resource creation permissions, which allows re...
CVE-2007-6384——Unspecified vulnerability in the Image Converter functionality in BEA WebLogic Mobility Server 3.3, 3.5, and 3.6 through...
CVE-2007-6385——The proxy server in Kerio WinRoute Firewall before 6.4.1 does not properly enforce authentication for HTTPS pages, which...
CVE-2007-6386——Stack-based buffer overflow in PccScan.dll before build 1451 in Trend Micro AntiVirus plus AntiSpyware 2008, Internet Se...
CVE-2007-6387——Multiple stack-based buffer overflows in the awApi4.AnswerWorks.1 ActiveX control in awApi4.dll 4.0.0.42, as used by Van...
CVE-2007-6338——SQL injection vulnerability in userlogin.jsp in Trivantis CourseMill Enterprise Learning Management System 4.1 SP4 allow...
CVE-2007-6357——Stack-based buffer overflow in Microsoft Office Access allows remote, user-assisted attackers to execute arbitrary code ...
CVE-2007-6358——pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwrite arbitrary files via a symlink attack ...
CVE-2007-6359——The cs_validate_page function in bsd/kern/ubc_subr.c in the xnu kernel 1228.0 and earlier in Apple Mac OS X 10.5.1 allow...
CVE-2007-6360——Unspecified vulnerability in the Sun eXtended System Control Facility (XSCF) Control Package (XCP) firmware before 1050 ...
CVE-2007-6361——Gekko 0.8.2 and earlier stores sensitive information under the web root with possibly insufficient access control, which...
CVE-2007-6362——SQL injection vulnerability in index.php in the RSGallery (com_rsgallery) 2.0 beta 5 and earlier component for Mambo and...
CVE-2007-6363——IBM Tivoli Netcool Security Manager 1.3.0 before Interim Fix 1, when using Active Directory (AD) LDAP authentication, al...
CVE-2007-6364——Cross-site scripting (XSS) vulnerability in modificarPerfil.php in JLMForo System allows remote authenticated users to i...
CVE-2007-6365——Cross-site scripting (XSS) vulnerability in modules/ecal/display.php in the Event Calendar in bcoos 1.0.10 allows remote...
CVE-2007-6366——Multiple SQL injection vulnerabilities in SineCMS 2.3.4 and earlier allow remote attackers to execute arbitrary SQL comm...
CVE-2007-6367——Multiple cross-site scripting (XSS) vulnerabilities in the guestbook in SineCMS 2.3.4 and earlier allow remote attackers...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now