2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-6412 | — | — | 1.5% | Dec 17, 2007 | Direct static code injection vulnerability in wiki/index.php in Bitweaver 2.0.0 and earlier, when comments are enabled, ... |
| CVE-2007-6381 | — | — | 1.3% | Dec 15, 2007 | SQL injection vulnerability in the indexed_search system extension in TYPO3 3.x, 4.0 through 4.0.7, and 4.1 through 4.1.... |
| CVE-2007-6382 | — | — | 1.9% | Dec 15, 2007 | The Event Dispatch Thread in Robocode before 1.5.1 allows remote attackers to execute arbitrary Java code by using a rob... |
| CVE-2007-6383 | — | — | 1.0% | Dec 15, 2007 | The DAV component in Chandler Server (Cosmo) before 0.10.1 does not check resource creation permissions, which allows re... |
| CVE-2007-6384 | — | — | 1.7% | Dec 15, 2007 | Unspecified vulnerability in the Image Converter functionality in BEA WebLogic Mobility Server 3.3, 3.5, and 3.6 through... |
| CVE-2007-6385 | — | — | 0.4% | Dec 15, 2007 | The proxy server in Kerio WinRoute Firewall before 6.4.1 does not properly enforce authentication for HTTPS pages, which... |
| CVE-2007-6386 | — | — | 1.0% | Dec 15, 2007 | Stack-based buffer overflow in PccScan.dll before build 1451 in Trend Micro AntiVirus plus AntiSpyware 2008, Internet Se... |
| CVE-2007-6387 | — | — | 38.0% | Dec 15, 2007 | Multiple stack-based buffer overflows in the awApi4.AnswerWorks.1 ActiveX control in awApi4.dll 4.0.0.42, as used by Van... |
| CVE-2007-6338 | — | — | 1.4% | Dec 15, 2007 | SQL injection vulnerability in userlogin.jsp in Trivantis CourseMill Enterprise Learning Management System 4.1 SP4 allow... |
| CVE-2007-5580 | — | — | 6.4% | Dec 15, 2007 | Buffer overflow in a certain driver in Cisco Security Agent 4.5.1 before 4.5.1.672, 5.0 before 5.0.0.225, 5.1 before 5.1... |
| CVE-2007-6357 | — | — | 16.0% | Dec 15, 2007 | Stack-based buffer overflow in Microsoft Office Access allows remote, user-assisted attackers to execute arbitrary code ... |
| CVE-2007-6358 | — | — | 0.5% | Dec 15, 2007 | pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwrite arbitrary files via a symlink attack ... |
| CVE-2007-6359 | — | — | 1.0% | Dec 15, 2007 | The cs_validate_page function in bsd/kern/ubc_subr.c in the xnu kernel 1228.0 and earlier in Apple Mac OS X 10.5.1 allow... |
| CVE-2007-6360 | — | — | 2.4% | Dec 15, 2007 | Unspecified vulnerability in the Sun eXtended System Control Facility (XSCF) Control Package (XCP) firmware before 1050 ... |
| CVE-2007-6361 | — | — | 1.2% | Dec 15, 2007 | Gekko 0.8.2 and earlier stores sensitive information under the web root with possibly insufficient access control, which... |
| CVE-2007-6362 | — | — | 2.1% | Dec 15, 2007 | SQL injection vulnerability in index.php in the RSGallery (com_rsgallery) 2.0 beta 5 and earlier component for Mambo and... |
| CVE-2007-6363 | — | — | 0.9% | Dec 15, 2007 | IBM Tivoli Netcool Security Manager 1.3.0 before Interim Fix 1, when using Active Directory (AD) LDAP authentication, al... |
| CVE-2007-6364 | — | — | 1.0% | Dec 15, 2007 | Cross-site scripting (XSS) vulnerability in modificarPerfil.php in JLMForo System allows remote authenticated users to i... |
| CVE-2007-6365 | — | — | 0.9% | Dec 15, 2007 | Cross-site scripting (XSS) vulnerability in modules/ecal/display.php in the Event Calendar in bcoos 1.0.10 allows remote... |
| CVE-2007-6366 | — | — | 2.4% | Dec 15, 2007 | Multiple SQL injection vulnerabilities in SineCMS 2.3.4 and earlier allow remote attackers to execute arbitrary SQL comm... |
| CVE-2007-6367 | — | — | 4.3% | Dec 15, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in the guestbook in SineCMS 2.3.4 and earlier allow remote attackers... |
| CVE-2007-6368 | — | — | 2.8% | Dec 15, 2007 | Directory traversal vulnerability in index.php in ezContents 1.4.5 allows remote attackers to read arbitrary files via a... |
| CVE-2007-6369 | — | — | 7.5% | Dec 15, 2007 | Multiple directory traversal vulnerabilities in resize.php in the PictPress 0.91 and earlier plugin for WordPress allow ... |
| CVE-2007-6371 | — | — | 1.5% | Dec 15, 2007 | Nokia N95 cell phone with RM-159 12.0.013 firmware allows remote attackers to cause a denial of service (device inoperab... |
| CVE-2007-6372 | — | — | 3.8% | Dec 15, 2007 | Unspecified vulnerability in Juniper JUNOS 7.3 through 8.4 allows remote attackers to cause a denial of service (crash) ... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now