2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-6346 | — | — | 1.9% | Dec 13, 2007 | Cross-site scripting (XSS) vulnerability in Rainboard before 2.10 allows remote attackers to inject arbitrary web script... |
| CVE-2007-6347 | — | — | 7.1% | Dec 13, 2007 | PHP remote file inclusion vulnerability in blocks/block_site_map.php in ViArt (1) CMS 3.3.2, (2) HelpDesk 3.3.2, (3) Sho... |
| CVE-2007-6342 | — | — | 1.9% | Dec 13, 2007 | SQL injection vulnerability in the David Castro AuthCAS module (AuthCAS.pm) 0.4 for the Apache HTTP Server allows remote... |
| CVE-2007-6015 | — | — | 27.5% | Dec 13, 2007 | Stack-based buffer overflow in the send_mailslot function in nmbd in Samba 3.0.0 through 3.0.27a, when the "domain logon... |
| CVE-2007-5989 | — | — | 4.4% | Dec 13, 2007 | Unspecified vulnerability in the skype4com URI handler in Skype before 3.6 GOLD allows remote attackers to execute arbit... |
| CVE-2007-6204 | — | — | 69.6% | Dec 13, 2007 | Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote att... |
| CVE-2007-6323 | — | — | 8.8% | Dec 13, 2007 | Multiple directory traversal vulnerabilities in MMS Gallery PHP 1.0 allow remote attackers to read arbitrary files via a... |
| CVE-2007-6324 | — | — | 5.3% | Dec 13, 2007 | PHP remote file inclusion vulnerability in head.php in CityWriter 0.9.7 allows remote attackers to execute arbitrary PHP... |
| CVE-2007-6325 | — | — | 10.6% | Dec 13, 2007 | PHP remote file inclusion vulnerability in adminbereich/designconfig.php in Fastpublish CMS 1.9999 allows remote attacke... |
| CVE-2007-6326 | — | — | 7.3% | Dec 13, 2007 | Sergey Lyubka Simple HTTPD (shttpd) 1.3 on Windows allows remote attackers to cause a denial of service via a request th... |
| CVE-2007-6327 | — | — | 11.4% | Dec 13, 2007 | Buffer overflow in a certain ActiveX control in Online Media Technologies AVSMJPEGFILE.DLL 1.1.1.102 allows remote attac... |
| CVE-2007-6328 | — | — | 0.3% | Dec 13, 2007 | DOSBox 0.72 and earlier allows local users to obtain access to the filesystem on the host operating system via the mount... |
| CVE-2007-6329 | — | — | 15.6% | Dec 13, 2007 | Microsoft Office 2007 12.0.6015.5000 and MSO 12.0.6017.5000 do not sign the metadata of Office Open XML (OOXML) document... |
| CVE-2007-6330 | — | — | 5.1% | Dec 13, 2007 | Meridian Prolog Manager 2007, and 7.5 and earlier, sends all usernames and passwords to the client in a (1) cleartext or... |
| CVE-2007-6331 | — | — | 30.1% | Dec 13, 2007 | Absolute path traversal vulnerability in the HPInfoDLL.HPInfo.1 ActiveX control in HPInfoDLL.dll 1.0, as shipped with HP... |
| CVE-2007-6332 | — | — | 8.4% | Dec 13, 2007 | The HPInfoDLL.HPInfo.1 ActiveX control in HPInfoDLL.dll 1.0, as shipped with HP Info Center (hpinfocenter.exe) 1.0.1.1 i... |
| CVE-2007-6333 | — | — | 8.7% | Dec 13, 2007 | The HPInfoDLL.HPInfo.1 ActiveX control in HPInfoDLL.dll 1.0, as shipped with HP Info Center (hpinfocenter.exe) 1.0.1.1 i... |
| CVE-2007-6322 | — | — | 7.5% | Dec 13, 2007 | Directory traversal vulnerability in filedownload.php in xml2owl 0.1.1 allows remote attackers to read arbitrary files v... |
| CVE-2007-5000 | — | — | 46.6% | Dec 13, 2007 | Cross-site scripting (XSS) vulnerability in the (1) mod_imap module in the Apache HTTP Server 1.3.0 through 1.3.39 and 2... |
| CVE-2007-5964 | — | — | 0.5% | Dec 13, 2007 | The default configuration of autofs 5 in some Linux distributions, such as Red Hat Enterprise Linux (RHEL) 5, omits the ... |
| CVE-2007-5007 | — | — | 3.9% | Dec 12, 2007 | Stack-based buffer overflow in the ir_fetch_seq function in balsa before 2.3.20 might allow remote IMAP servers to execu... |
| CVE-2007-6321 | — | — | 5.4% | Dec 12, 2007 | Cross-site scripting (XSS) vulnerability in RoundCube webmail 0.1rc2, 2007-12-09, and earlier versions, when using Inter... |
| CVE-2007-6320 | — | — | 0.7% | Dec 12, 2007 | Feature 4.7.x-dev and 5.x-dev before 20071206, a Drupal module, does not follow Drupal's Forms API submission model, whi... |
| CVE-2007-6314 | — | — | 7.2% | Dec 12, 2007 | BarracudaDrive Web Server before 3.8 allows remote attackers to read the source code for web scripts by appending a (1) ... |
| CVE-2007-6315 | — | — | 7.1% | Dec 12, 2007 | Group Chat in BarracudaDrive Web Server before 3.8 allows remote authenticated users to cause a denial of service (crash... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now