2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-6407 | — | — | 1.0% | Dec 17, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in IBM Tivoli Provisioning Manager Express allow remote attackers to... |
| CVE-2007-6408 | — | — | 1.2% | Dec 17, 2007 | IBM Tivoli Provisioning Manager Express provides unspecified information in error messages when (1) attempted duplicatio... |
| CVE-2007-6409 | — | — | 1.0% | Dec 17, 2007 | The gg protocol handler in Gadu-Gadu, when this product is installed but not running, does not properly handle the skin ... |
| CVE-2007-6410 | — | — | 0.4% | Dec 17, 2007 | Gadu-Gadu does not properly perform protocol handling, which allows remote attackers to conduct cross-site request forge... |
| CVE-2007-6411 | — | — | 4.1% | Dec 17, 2007 | Multiple buffer overflows in the HandleEmotsConfig function in the GG Client in Gadu-Gadu 7.7 Build 3669 allow user-assi... |
| CVE-2007-6412 | — | — | 1.5% | Dec 17, 2007 | Direct static code injection vulnerability in wiki/index.php in Bitweaver 2.0.0 and earlier, when comments are enabled, ... |
| CVE-2007-6381 | — | — | 1.3% | Dec 15, 2007 | SQL injection vulnerability in the indexed_search system extension in TYPO3 3.x, 4.0 through 4.0.7, and 4.1 through 4.1.... |
| CVE-2007-6382 | — | — | 1.9% | Dec 15, 2007 | The Event Dispatch Thread in Robocode before 1.5.1 allows remote attackers to execute arbitrary Java code by using a rob... |
| CVE-2007-6383 | — | — | 1.0% | Dec 15, 2007 | The DAV component in Chandler Server (Cosmo) before 0.10.1 does not check resource creation permissions, which allows re... |
| CVE-2007-6384 | — | — | 1.7% | Dec 15, 2007 | Unspecified vulnerability in the Image Converter functionality in BEA WebLogic Mobility Server 3.3, 3.5, and 3.6 through... |
| CVE-2007-6385 | — | — | 0.4% | Dec 15, 2007 | The proxy server in Kerio WinRoute Firewall before 6.4.1 does not properly enforce authentication for HTTPS pages, which... |
| CVE-2007-6386 | — | — | 1.0% | Dec 15, 2007 | Stack-based buffer overflow in PccScan.dll before build 1451 in Trend Micro AntiVirus plus AntiSpyware 2008, Internet Se... |
| CVE-2007-6387 | — | — | 38.0% | Dec 15, 2007 | Multiple stack-based buffer overflows in the awApi4.AnswerWorks.1 ActiveX control in awApi4.dll 4.0.0.42, as used by Van... |
| CVE-2007-6338 | — | — | 1.4% | Dec 15, 2007 | SQL injection vulnerability in userlogin.jsp in Trivantis CourseMill Enterprise Learning Management System 4.1 SP4 allow... |
| CVE-2007-6357 | — | — | 16.0% | Dec 15, 2007 | Stack-based buffer overflow in Microsoft Office Access allows remote, user-assisted attackers to execute arbitrary code ... |
| CVE-2007-6358 | — | — | 0.5% | Dec 15, 2007 | pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwrite arbitrary files via a symlink attack ... |
| CVE-2007-6359 | — | — | 1.0% | Dec 15, 2007 | The cs_validate_page function in bsd/kern/ubc_subr.c in the xnu kernel 1228.0 and earlier in Apple Mac OS X 10.5.1 allow... |
| CVE-2007-6360 | — | — | 2.4% | Dec 15, 2007 | Unspecified vulnerability in the Sun eXtended System Control Facility (XSCF) Control Package (XCP) firmware before 1050 ... |
| CVE-2007-6361 | — | — | 1.2% | Dec 15, 2007 | Gekko 0.8.2 and earlier stores sensitive information under the web root with possibly insufficient access control, which... |
| CVE-2007-6362 | — | — | 2.1% | Dec 15, 2007 | SQL injection vulnerability in index.php in the RSGallery (com_rsgallery) 2.0 beta 5 and earlier component for Mambo and... |
| CVE-2007-6363 | — | — | 0.9% | Dec 15, 2007 | IBM Tivoli Netcool Security Manager 1.3.0 before Interim Fix 1, when using Active Directory (AD) LDAP authentication, al... |
| CVE-2007-6364 | — | — | 1.0% | Dec 15, 2007 | Cross-site scripting (XSS) vulnerability in modificarPerfil.php in JLMForo System allows remote authenticated users to i... |
| CVE-2007-6365 | — | — | 0.9% | Dec 15, 2007 | Cross-site scripting (XSS) vulnerability in modules/ecal/display.php in the Event Calendar in bcoos 1.0.10 allows remote... |
| CVE-2007-6366 | — | — | 2.4% | Dec 15, 2007 | Multiple SQL injection vulnerabilities in SineCMS 2.3.4 and earlier allow remote attackers to execute arbitrary SQL comm... |
| CVE-2007-6367 | — | — | 4.3% | Dec 15, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in the guestbook in SineCMS 2.3.4 and earlier allow remote attackers... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now