2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-0421 | — | — | 2.1% | Jan 23, 2007 | BEA WebLogic Server 6.1 through 6.1 SP7, and 7.0 through 7.0 SP7 allows remote attackers to cause a denial of service (d... |
| CVE-2007-0420 | — | — | 1.4% | Jan 23, 2007 | BEA WebLogic Server 9.0, 9.1, and 9.2 Gold allows remote attackers to obtain sensitive information via malformed HTTP re... |
| CVE-2007-0419 | — | — | 1.7% | Jan 23, 2007 | The BEA WebLogic Server proxy plug-in before June 2006 for the Apache HTTP Server does not properly handle protocol erro... |
| CVE-2007-0418 | — | — | 1.6% | Jan 23, 2007 | BEA WebLogic Server 7.0 through 7.0 SP6, 8.1 through 8.1 SP5, 9.0, and 9.1 does not enforce a security policy that decla... |
| CVE-2007-0417 | — | — | 1.8% | Jan 23, 2007 | BEA WebLogic Server 7.0 through 7.0 SP7, 8.1 through 8.1 SP5, 9.0, and 9.1, when using the WebLogic Server 6.1 compatibi... |
| CVE-2007-0416 | — | — | 1.6% | Jan 23, 2007 | The WSEE runtime (WS-Security runtime) in BEA WebLogic Server 9.0 and 9.1 does not verify credentials when decrypting cl... |
| CVE-2007-0415 | — | — | 1.3% | Jan 23, 2007 | BEA WebLogic Server 8.1 through 8.1 SP5 does not properly enforce access control after a dynamic update and dynamic rede... |
| CVE-2007-0414 | — | — | 1.7% | Jan 23, 2007 | BEA WebLogic Server 6.1 through 6.1 SP7, 7.0 through 7.0 SP6, 8.1 through 8.1 SP5, and 9.0 allows remote attackers to ca... |
| CVE-2007-0413 | — | — | 0.3% | Jan 23, 2007 | BEA WebLogic Server 8.1 through 8.1 SP5 stores cleartext data in a backup of config.xml after offline editing, which all... |
| CVE-2007-0412 | — | — | 1.9% | Jan 23, 2007 | BEA WebLogic Server 6.1 through 6.1 SP7, 7.0 through 7.0 SP7, and 8.1 through 8.1 SP5 allows remote attackers to read ar... |
| CVE-2007-0411 | — | — | 0.8% | Jan 23, 2007 | BEA WebLogic Server 8.1 through 8.1 SP5, 9.0, 9.1, and 9.2 Gold, when WS-Security is used, does not properly validate ce... |
| CVE-2007-0410 | — | — | 2.4% | Jan 23, 2007 | Unspecified vulnerability in the thread management in BEA WebLogic 7.0 through 7.0 SP6, 8.1 through 8.1 SP5, 9.0, and 9.... |
| CVE-2007-0409 | — | — | 0.3% | Jan 23, 2007 | BEA WebLogic 7.0 through 7.0 SP6, 8.1 through 8.1 SP4, and 9.0 initial release does not encrypt passwords stored in the ... |
| CVE-2007-0408 | — | — | 1.0% | Jan 23, 2007 | BEA Weblogic Server 8.1 through 8.1 SP4 does not properly validate client certificates when reusing cached connections, ... |
| CVE-2007-0401 | — | — | 1.0% | Jan 22, 2007 | SQL injection vulnerability in admin/memberlist.php in Easebay Resources Login Manager 3.0 allows remote attackers to ex... |
| CVE-2007-0403 | — | — | 1.1% | Jan 22, 2007 | SQL injection vulnerability in admin/memberlist.php in Easebay Resources Paypal Subscription Manager allows remote attac... |
| CVE-2007-0402 | — | — | 1.1% | Jan 22, 2007 | Cross-site scripting (XSS) vulnerability in admin/edit_member.php in Easebay Resources Paypal Subscription Manager allow... |
| CVE-2007-0400 | — | — | 1.1% | Jan 22, 2007 | Cross-site scripting (XSS) vulnerability in admin/memberlist.php in Easebay Resources Login Manager 3.0 allows remote at... |
| CVE-2007-0399 | — | — | 2.1% | Jan 22, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Simple Machines Forum (SMF) 1.1 RC3 allow remote aut... |
| CVE-2007-0398 | — | — | 1.1% | Jan 22, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in forum.php3 in Arnaud Guyonne (aka Arnotic) a-forum allow remote a... |
| CVE-2007-0397 | — | — | 2.8% | Jan 20, 2007 | The Cisco Security Monitoring, Analysis and Response System (CS-MARS) before 4.2.3 and Adaptive Security Device Manager ... |
| CVE-2007-0390 | — | — | 1.6% | Jan 19, 2007 | Cross-site scripting (XSS) vulnerability in index.php in sabros.us 1.7 allows remote attackers to inject arbitrary web s... |
| CVE-2007-0389 | — | — | 2.8% | Jan 19, 2007 | Directory traversal vulnerability in ArsDigita Community System (ACS) 3.4.10 and earlier, and ArsDigita Community Educat... |
| CVE-2007-0388 | — | — | 1.0% | Jan 19, 2007 | SQL injection vulnerability in search.php in Woltlab Burning Board (wBB) 1.0.2 and earlier, and 2.3.6 and earlier in the... |
| CVE-2007-0387 | — | — | 1.1% | Jan 19, 2007 | SQL injection vulnerability in models/category.php in the Weblinks component for Joomla! SVN 20070118 (com_weblinks) all... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now