2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-0031Heap-based buffer overflow in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2004 for Mac, and v.X for Mac allows user-as...
CVE-2007-0034Buffer overflow in the Advanced Search (Finder.exe) feature of Microsoft Outlook 2000, 2002, and 2003 allows user-assist...
CVE-2007-0027Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2004 for Mac, and v.X for Mac allows remote attackers to execute arbitrary...
CVE-2007-0157Array index error in the uri_lookup function in the URI parser for neon 0.26.0 to 0.26.2, possibly only on 64-bit platfo...
CVE-2007-0143Multiple PHP remote file inclusion vulnerabilities in NUNE News Script 2.0pre2 allow remote attackers to execute arbitra...
CVE-2007-0142SQL injection vulnerability in orange.asp in ShopStoreNow E-commerce Shopping Cart allows remote attackers to execute ar...
CVE-2007-0141Cross-site scripting (XSS) vulnerability in yald.php in Yet Another Link Directory 1.0 allows remote attackers to inject...
CVE-2007-0140SQL injection vulnerability in down.asp in Kolayindir Download (Yenionline) allows remote attackers to execute arbitrary...
CVE-2007-0145PHP remote file inclusion vulnerability in bn_smrep1.php in BinGoPHP News (BP News) 3.01 allows remote attackers to exec...
CVE-2007-0144Cross-site scripting (XSS) vulnerability in search.asp in Digitizing Quote And Ordering System 1.0 allows remote authent...
CVE-2007-0147Cuyahoga before 1.0.1 installs the FCKEditor component with an incorrect deny statement in a Web.config file, which allo...
CVE-2007-0148Format string vulnerability in OmniGroup OmniWeb 5.5.1 allows remote attackers to cause a denial of service (application...
CVE-2007-0149EMembersPro 1.0 stores sensitive information under the web root with insufficient access control, which allows remote at...
CVE-2007-0150Multiple PHP remote file inclusion vulnerabilities in index.php in Dayfox Blog allow remote attackers to execute arbitra...
CVE-2007-0151MitiSoft stores sensitive information under the web root with insufficient access control, which allows remote attackers...
CVE-2007-0152OhhASP stores sensitive information under the web root with insufficient access control, which allows remote attackers t...
CVE-2007-0153AJLogin 3.5 stores sensitive information under the web root with insufficient access control, which allows remote attack...
CVE-2007-0154Webulas stores sensitive information under the web root with insufficient access control, which allows remote attackers ...
CVE-2007-0155HarikaOnline 2.0 stores sensitive information under the web root with insufficient access control, which allows remote a...
CVE-2007-0156M-Core stores the database under the web document root, which allows remote attackers to obtain sensitive information vi...
CVE-2007-0146Multiple cross-site scripting (XSS) vulnerabilities in Fix and Chips CMS 1.0 allow remote attackers to inject arbitrary ...
CVE-2007-0139Unspecified vulnerability in the DECnet-Plus 7.3-2 feature in DECnet/OSI 7.3-2 for OpenVMS ALPHA, and the DECnet-Plus 7....
CVE-2007-0137Cross-site scripting (XSS) vulnerability in SimpleBoxes/SerendipityNZ Serene Bach 2.05R and earlier, and 2.08D and earli...
CVE-2007-0136Multiple cross-site scripting (XSS) vulnerabilities in Drupal before 4.6.11, and 4.7 before 4.7.5, allow remote attacker...
CVE-2007-0135PHP remote file inclusion vulnerability in inc/init.inc.php in Aratix 0.2.2 beta 11 and earlier, when register_globals i...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now