2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-0561Multiple PHP remote file inclusion vulnerabilities in Xero Portal 1.2 allow remote attackers to execute arbitrary PHP co...
CVE-2007-0564The license registering interface in Symantec Web Security (SWS) before 3.0.1.85 allows attackers to cause a denial of s...
CVE-2007-0557rMake before 1.0.4 drops root privileges in a way that retains the original supplemental groups, which might allow attac...
CVE-2007-0347The is_eow function in format.c in CVSTrac before 2.0.1 does not properly check for the "'" (quote) character, which all...
CVE-2007-0547Cross-site scripting (XSS) vulnerability in CGI-RESCUE WebFORM 4.3 and earlier allows remote attackers to inject arbitra...
CVE-2007-0554SQL injection vulnerability in print.asp in Guo Xu Guos Posting System (GPS) 1.2 allows remote attackers to execute arbi...
CVE-2007-0553Multiple cross-site scripting (XSS) vulnerabilities in index.inc.php in PHProxy before 0.5 beta 2 allow remote attackers...
CVE-2007-0552Cross-site scripting (XSS) vulnerability in install/default/error404.html in Oh no! Not another CMS (Onnac) 0.0.8.4 and ...
CVE-2007-0551Multiple PHP remote file inclusion vulnerabilities in cmsimple/cms.php in CMSimple 2.7 allow remote attackers to execute...
CVE-2007-0550Cross-site scripting (XSS) vulnerability in search.php in 212cafeBoard 0.08 Beta allows remote attackers to inject arbit...
CVE-2007-0549Cross-site scripting (XSS) vulnerability in list3.php in 212cafeBoard 6.30 Beta allows remote attackers to inject arbitr...
CVE-2007-0548KarjaSoft Sami HTTP Server 2.0.1 allows remote attackers to cause a denial of service (daemon hang) via a large number o...
CVE-2007-0546Toxiclab Shoutbox 1 stores sensitive information under the web root with insufficient access control, which allows remot...
CVE-2007-0545Maxtricity Tagger 0.1 stores sensitive information under the web root with insufficient access control, which allows rem...
CVE-2007-0544Cross-site scripting (XSS) vulnerability in private.php in MyBB (aka MyBulletinBoard) allows remote authenticated users ...
CVE-2007-0543ZixForum 1.14 and earlier stores sensitive information under the web root with insufficient access control, which allows...
CVE-2007-0542Cross-site scripting (XSS) vulnerability in show.php in 212cafe Guestbook 4.00 beta allows remote attackers to inject ar...
CVE-2007-0541WordPress allows remote attackers to determine the existence of arbitrary files, and possibly read portions of certain f...
CVE-2007-0540WordPress allows remote attackers to cause a denial of service (bandwidth or thread consumption) via pingback service ca...
CVE-2007-0539The wp_remote_fopen function in WordPress before 2.1 allows remote attackers to cause a denial of service (bandwidth or ...
CVE-2007-0538Telligent Community Server 2.1 and earlier allows remote attackers to cause a denial of service (bandwidth or thread con...
CVE-2007-0463Format string vulnerability in Apple Software Update 2.0.5 on Mac OS X 10.4.8 allows remote attackers to cause a denial ...
CVE-2007-0537The KDE HTML library (kdelibs), as used by Konqueror 3.5.5, does not properly parse HTML comments, which allows remote a...
CVE-2007-0536The chroot helper in rMake for rPath Linux 1 does not drop supplemental groups, which causes packages to be installed wi...
CVE-2007-0530Multiple PHP remote file inclusion vulnerabilities in Advanced Guestbook 2.4.2 allow remote attackers to execute arbitra...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now