2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-6367——Multiple cross-site scripting (XSS) vulnerabilities in the guestbook in SineCMS 2.3.4 and earlier allow remote attackers...
CVE-2007-6368——Directory traversal vulnerability in index.php in ezContents 1.4.5 allows remote attackers to read arbitrary files via a...
CVE-2007-6369——Multiple directory traversal vulnerabilities in resize.php in the PictPress 0.91 and earlier plugin for WordPress allow ...
CVE-2007-6371——Nokia N95 cell phone with RM-159 12.0.013 firmware allows remote attackers to cause a denial of service (device inoperab...
CVE-2007-6372——Unspecified vulnerability in Juniper JUNOS 7.3 through 8.4 allows remote attackers to cause a denial of service (crash) ...
CVE-2007-6373——Multiple SQL injection vulnerabilities in GestDown 1.00 Beta allow remote attackers to execute arbitrary SQL commands vi...
CVE-2007-6374——Multiple cross-site scripting (XSS) vulnerabilities in Bitweaver 2.0.0 and earlier allow remote attackers to inject arbi...
CVE-2007-6375——Multiple SQL injection vulnerabilities in Bitweaver 2.0.0 and earlier allow remote attackers to execute arbitrary SQL co...
CVE-2007-6376——Directory traversal vulnerability in autohtml.php in Francisco Burzi PHP-Nuke 8.0 allows remote attackers to include and...
CVE-2007-6377——Stack-based buffer overflow in the PassThru functionality in ext.dll in BadBlue 2.72b and earlier allows remote attacker...
CVE-2007-6378——Directory traversal vulnerability in upload.dll in BadBlue 2.72b and earlier allows remote attackers to create or overwr...
CVE-2007-6379——BadBlue 2.72b and earlier allows remote attackers to obtain sensitive information via an invalid browse parameter, which...
CVE-2007-6380——Multiple SQL injection vulnerabilities in e-Xoops (exoops) 1.08, and 1.05 Rev 1 through 3, allow remote attackers to exe...
CVE-2007-6195——Buffer overflow in the sw_rpc_agent_init function in swagentd in Software Distributor (SD), and possibly other DCE appli...
CVE-2007-4706——Heap-based buffer overflow in Apple QuickTime before 7.3.1 allows remote attackers to execute arbitrary code via a craft...
CVE-2007-4707——Multiple unspecified vulnerabilities in the Flash media handler in Apple QuickTime before 7.3.1 allow remote attackers t...
CVE-2007-5582——Cross-site scripting (XSS) vulnerability in the login page in Cisco CiscoWorks Server (CS), possibly 2.6 and earlier, wh...
CVE-2007-6370——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-5583. Reason: This candidate is a duplicate of...
CVE-2007-6249——etc-update in Portage before 2.1.3.11 on Gentoo Linux relies on the umask to set permissions for the merge file, often r...
CVE-2007-6151——The isdn_ioctl function in isdn_common.c in Linux kernel 2.6.23 allows local users to cause a denial of service via a cr...
CVE-2007-6350——scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute code by invoking d...
CVE-2007-6348——SquirrelMail 1.4.11 and 1.4.12, as distributed on sourceforge.net before 20071213, has been externally modified to creat...
CVE-2007-6343——Cross-site scripting (XSS) vulnerability in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allows remote...
CVE-2007-6344——Directory traversal vulnerability in modules/cms/index.php in Mcms Easy Web Make 1.3, allows remote attackers to include...
CVE-2007-6345——SQL injection vulnerability in aurora framework before 20071208 allows remote attackers to execute arbitrary SQL command...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now