2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-0266SQL injection vulnerability in boxx/ShowAppendix.asp in Ezboxx Portal System Beta 0.7.6 and earlier allows remote attack...
CVE-2007-0264Buffer overflow in Winzip32.exe in WinZip 9.0 allows local users to cause a denial of service (application crash) and po...
CVE-2007-0263Unspecified vulnerability in Total Commander before 6.5.6 allows user-assisted remote attackers to delete arbitrary file...
CVE-2007-0262WordPress 2.0.6, and 2.1Alpha 3 (SVN:4662), does not properly verify that the m parameter value has the string data type...
CVE-2007-0261snews.php in sNews 1.5.30 and earlier does not properly exit when authentication fails, which allows remote attackers to...
CVE-2007-0257HIGH7.8Unspecified vulnerability in the expand_stack function in grsecurity PaX allows local users to gain privileges via unspe...
CVE-2007-0265Multiple cross-site scripting (XSS) vulnerabilities in Ezboxx Portal System Beta 0.7.6 and earlier allow remote attacker...
CVE-2007-0248The aclMatchExternal function in Squid before 2.6.STABLE7 allows remote attackers to cause a denial of service (crash) b...
CVE-2007-0247squid/src/ftp.c in Squid before 2.6.STABLE7 allows remote FTP servers to cause a denial of service (core dump) via craft...
CVE-2007-0235Stack-based buffer overflow in the glibtop_get_proc_map_s function in libgtop before 2.14.6 (libgtop2) allows local user...
CVE-2007-0236Double free vulnerability in the _ATPsndrsp function in Apple Mac OS X 10.4.8, and possibly other versions, allows remot...
CVE-2007-0227slocate 3.1 does not properly manage database entries that specify names of files in protected directories, which allows...
CVE-2007-0226SQL injection vulnerability in wbsearch.aspx in uniForum 4 and earlier allows remote attackers to execute arbitrary SQL ...
CVE-2007-0225Cross-site scripting (XSS) vulnerability in shopcustadmin.asp in VP-ASP Shopping Cart 6.09 and earlier allows remote att...
CVE-2007-0224SQL injection vulnerability in shopgiftregsearch.asp in VP-ASP Shopping Cart 6.09 and earlier allows remote attackers to...
CVE-2007-0223SQL injection vulnerability in shared/code/cp_functions_downloads.php in Nicola Asuni All In One Control Panel (AIOCP) b...
CVE-2007-0233wp-trackback.php in WordPress 2.0.6 and earlier does not properly unset variables when the input data includes a numeric...
CVE-2007-0231Cross-site scripting (XSS) vulnerability in Movable Type (MT) 3.33, when nofollow is disabled and unmoderated comments a...
CVE-2007-0232PHP remote file inclusion vulnerability in routines/fieldValidation.php in Jshop Server 1.3 allows remote attackers to e...
CVE-2007-0230PHP remote file inclusion vulnerability in install.php in CS-Cart 1.3.3 allows remote attackers to execute arbitrary PHP...
CVE-2007-0229Integer overflow in the ffs_mountfs function in Mac OS X 10.4.8 and FreeBSD 6.1 allows local users to cause a denial of ...
CVE-2007-0228The DataCollector service in EIQ Networks Network Security Analyzer allows remote attackers to cause a denial of service...
CVE-2007-0184Getahead Direct Web Remoting (DWR) before 1.1.4 allows attackers to obtain unauthorized access to public methods via a c...
CVE-2007-0195my.activation.php3 in F5 FirePass 5.4 through 5.5.1 and 6.0 displays different error messages for failed login attempts ...
CVE-2007-0194admin.php in MKPortal M1.1 RC1 allows remote attackers to obtain sensitive information via a direct request with an MK_P...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now