2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-0634 | — | — | 9.1% | Jan 31, 2007 | Unspecified vulnerability in Sun Solaris 10 before 20070130 allows remote attackers to cause a denial of service (system... |
| CVE-2007-0635 | — | — | 9.1% | Jan 31, 2007 | Multiple PHP remote file inclusion vulnerabilities in EncapsCMS 0.3.6 allow remote attackers to execute arbitrary PHP co... |
| CVE-2007-0643 | — | — | 6.9% | Jan 31, 2007 | Stack-based buffer overflow in Bloodshed Dev-C++ 4.9.9.2 allows user-assisted remote attackers to cause a denial of serv... |
| CVE-2007-0642 | — | — | 2.4% | Jan 31, 2007 | SQL injection vulnerability in tForum 2.00 in the Raymond BERTHOU script collection (aka RBL - ASP) allows remote attack... |
| CVE-2007-0641 | — | — | 4.4% | Jan 31, 2007 | Buffer overflow in the EnumPrintersA function in dapcnfsd.dll 0.6.4.0 in Shaffer Solutions (SSC) DiskAccess NFS Client a... |
| CVE-2007-0640 | — | — | 2.0% | Jan 31, 2007 | Buffer overflow in ZABBIX before 1.1.5 has unknown impact and attack vectors related to "SNMP IP addresses." |
| CVE-2007-0639 | — | — | 6.9% | Jan 31, 2007 | Multiple static code injection vulnerabilities in error.php in GuppY 4.5.16 and earlier allow remote attackers to inject... |
| CVE-2007-0638 | — | — | 3.0% | Jan 31, 2007 | show.php in Vlad Alexa Mancini PHPFootball 1.6 allows remote attackers to obtain sensitive information (database content... |
| CVE-2007-0624 | — | — | 1.2% | Jan 31, 2007 | user.php in MAXdev MDPro 1.0.76 allows remote attackers to obtain the full path via a ' (quote) character, and possibly ... |
| CVE-2007-0633 | — | — | 3.1% | Jan 31, 2007 | PHP remote file inclusion vulnerability in include/themes/themefunc.php in MyNews 4.2.2 and earlier allows remote attack... |
| CVE-2007-0632 | — | — | 1.0% | Jan 31, 2007 | SQL injection vulnerability in artreplydelete.asp in ASP EDGE 1.3a and earlier allows remote attackers to execute arbitr... |
| CVE-2007-0631 | — | — | 1.2% | Jan 31, 2007 | SQL injection vulnerability in index.php in Eclectic Designs CascadianFAQ 4.1 and earlier allows remote attackers to exe... |
| CVE-2007-0630 | — | — | 1.0% | Jan 31, 2007 | Multiple SQL injection vulnerabilities in the generate_csv function in classes/class.news.php in X-dev xNews 1.3 and ear... |
| CVE-2007-0629 | — | — | 1.4% | Jan 31, 2007 | The www_purgeList method in Plain Black WebGUI before 7.3.8 does not properly check user permissions, which allows attac... |
| CVE-2007-0628 | — | — | 1.9% | Jan 31, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Access Manager 6.1, 6.2, 6 2005Q1 (6.3), and 7 20... |
| CVE-2007-0627 | — | — | 0.3% | Jan 31, 2007 | Michael Still gtalkbot before 1.2 places username and password arguments on the command line, which allows local users t... |
| CVE-2007-0626 | — | — | 3.4% | Jan 31, 2007 | The comment_form_add_preview function in comment.module in Drupal before 4.7.6, and 5.x before 5.1, and vbDrupal, allows... |
| CVE-2007-0625 | — | — | 0.3% | Jan 31, 2007 | nxconfigure.sh in NoMachine NX Server before 2.1.0-18 does not validate the invoking user, which allows local users to m... |
| CVE-2007-0623 | — | — | 1.8% | Jan 31, 2007 | SQL injection vulnerability in index.php in MAXdev MDPro 1.0.76 allows remote attackers to execute arbitrary SQL command... |
| CVE-2007-0622 | — | — | 0.9% | Jan 31, 2007 | Cross-site request forgery (CSRF) vulnerability in MyBB (aka MyBulletinBoard) 1.2.2 allows remote attackers to send mess... |
| CVE-2007-0621 | — | — | — | Jan 31, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-6456. Reason: This candidate is a duplicate of... |
| CVE-2007-0620 | — | — | 3.5% | Jan 31, 2007 | download.php in FD Script 1.3.2 and earlier allows remote attackers to read source of files under the web document root ... |
| CVE-2007-0619 | — | — | 4.6% | Jan 31, 2007 | chmlib before 0.39 allows user-assisted remote attackers to execute arbitrary code via a crafted page block length in a ... |
| CVE-2007-0618 | — | — | 2.0% | Jan 31, 2007 | Unspecified vulnerability in (1) pop3d, (2) pop3ds, (3) imapd, and (4) imapds in IBM AIX 5.3.0 has unspecified impact an... |
| CVE-2007-0617 | — | — | 1.2% | Jan 31, 2007 | The SpamBlocker.dll ActiveX control in Earthlink TotalAccess is marked "safe for scripting," which allows remote attacke... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now