2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-0110Cross-site scripting (XSS) vulnerability in nidp/idff/sso in Novell Access Manager Identity Server before 3.0.0-1013 all...
CVE-2007-0109wp-login.php in WordPress 2.0.5 and earlier displays different error messages if a user exists or not, which allows remo...
CVE-2007-0108nwgina.dll in Novell Client 4.91 SP3 for Windows 2000/XP/2003 does not delete user profiles during a Terminal Service or...
CVE-2007-0106Cross-site scripting (XSS) vulnerability in the CSRF protection scheme in WordPress before 2.0.6 allows remote attackers...
CVE-2007-0105Stack-based buffer overflow in the CSAdmin service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 an...
CVE-2007-0104The Adobe PDF specification 1.3, as implemented by (a) xpdf 3.0.1 patch 2, (b) kpdf in KDE before 3.5.5, (c) poppler bef...
CVE-2007-0103The Adobe PDF specification 1.3, as implemented by Adobe Acrobat before 8.0.0, allows remote attackers to have an unknow...
CVE-2007-0102The Adobe PDF specification 1.3, as implemented by Apple Mac OS X Preview, allows remote attackers to have an unknown im...
CVE-2007-0107WordPress before 2.0.6, when mbstring is enabled for PHP, decodes alternate character sets after escaping the SQL query,...
CVE-2007-0101Cross-site request forgery (CSRF) vulnerability in SPINE allows remote attackers to perform unauthorized actions as admi...
CVE-2007-0100The Perforce client does not restrict the set of files that it overwrites upon receiving a request from the server, whic...
CVE-2007-0099Race condition in the msxml3 module in Microsoft XML Core Services 3.0, as used in Internet Explorer 6 and other applica...
CVE-2007-0096CarbonCommunities stores sensitive information under the web root with insufficient access control, which allows remote ...
CVE-2007-0095phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via a direct request for themes/darkblue_oran...
CVE-2007-0094Sven Moderow GuestBook 0.3a stores sensitive information under the web root with insufficient access control, which allo...
CVE-2007-0093SQL injection vulnerability in page.php in Simple Web Content Management System allows remote attackers to execute arbit...
CVE-2007-0092SQL injection vulnerability in productdetail.asp in E-SMARTCART 1.0 allows remote attackers to execute arbitrary SQL com...
CVE-2007-0091newsCMSlite stores sensitive information under the web root with insufficient access control, which allows remote attack...
CVE-2007-0090WineGlass stores sensitive information under the web root with insufficient access control, which allows remote attacker...
CVE-2007-0089jgbbs stores sensitive information under the web root with insufficient access control, which allows remote attackers to...
CVE-2007-0086The Apache HTTP Server, when accessed through a TCP connection with a large window size, allows remote attackers to caus...
CVE-2007-0087Microsoft Internet Information Services (IIS), when accessed through a TCP connection with a large window size, allows r...
CVE-2007-0088Multiple directory traversal vulnerabilities in openmedia allow remote attackers to read arbitrary files via a .. (dot d...
CVE-2007-0098Directory traversal vulnerability in language.php in VerliAdmin 0.3 and earlier, when magic_quotes_gpc is disabled, allo...
CVE-2007-0097Multiple stack-based buffer overflows in the (1) LoadTree and (2) ReadHeader functions in PAISO.DLL 1.7.3.0 (1.7.3 beta)...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now