2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-5613 | — | — | 2.9% | Dec 5, 2007 | Cross-site scripting (XSS) vulnerability in Dump Servlet in Mortbay Jetty before 6.1.6rc1 allows remote attackers to inj... |
| CVE-2007-5355 | — | — | 16.6% | Dec 5, 2007 | The Web Proxy Auto-Discovery (WPAD) feature in Microsoft Internet Explorer 6 and 7, when a primary DNS suffix with three... |
| CVE-2007-5614 | — | — | 4.0% | Dec 5, 2007 | Mortbay Jetty before 6.1.6rc1 does not properly handle "certain quote sequences" in HTML cookie parameters, which allows... |
| CVE-2007-5615 | — | — | 3.6% | Dec 5, 2007 | CRLF injection vulnerability in Mortbay Jetty before 6.1.6rc0 allows remote attackers to inject arbitrary HTTP headers a... |
| CVE-2007-6240 | — | — | 1.0% | Dec 5, 2007 | SQL injection vulnerability in active.asp in Snitz Forums 2000 3.4.06 allows remote attackers to execute arbitrary SQL c... |
| CVE-2007-6241 | — | — | 1.0% | Dec 5, 2007 | Multiple unspecified vulnerabilities in Beehive Forum 0.7.1 have unknown "critical" impact and attack vectors, different... |
| CVE-2007-6224 | — | — | 1.5% | Dec 4, 2007 | The RealNetworks RealAudioObjects.RealAudio ActiveX control in rmoc3260.dll, as shipped with RealPlayer 11, allows remot... |
| CVE-2007-6225 | — | — | 0.4% | Dec 4, 2007 | Unspecified vulnerability in Sun Solaris 10, when 64bit mode is used on the x86 platform, allows local users in a Linux ... |
| CVE-2007-6226 | — | — | 1.8% | Dec 4, 2007 | The American Power Conversion (APC) AP7932 0u 30amp Switched Rack Power Distribution Unit (PDU), with rpdu 3.5.5 and aos... |
| CVE-2007-6227 | — | — | 0.7% | Dec 4, 2007 | QEMU 0.9.0 allows local users of a Windows XP SP2 guest operating system to overwrite the TranslationBlock (code_gen_buf... |
| CVE-2007-6228 | — | — | 2.1% | Dec 4, 2007 | Stack-based buffer overflow in the Helper class in the yt.ythelper.2 ActiveX control in Yahoo! Toolbar 1.4.1 allows remo... |
| CVE-2007-6229 | — | — | 2.4% | Dec 4, 2007 | PHP remote file inclusion vulnerability in common/classes/class_HeaderHandler.lib.php in Rayzz Script 2.0 allows remote ... |
| CVE-2007-6230 | — | — | 6.3% | Dec 4, 2007 | Directory traversal vulnerability in common/classes/class_HeaderHandler.lib.php in Rayzz Script 2.0 allows remote attack... |
| CVE-2007-6231 | — | — | 3.4% | Dec 4, 2007 | Multiple PHP remote file inclusion vulnerabilities in tellmatic 1.0.7 allow remote attackers to execute arbitrary PHP co... |
| CVE-2007-6232 | — | — | 1.6% | Dec 4, 2007 | Cross-site scripting (XSS) vulnerability in index.php in FTP Admin 0.1.0 allows remote attackers to inject arbitrary web... |
| CVE-2007-6233 | — | — | 1.9% | Dec 4, 2007 | Directory traversal vulnerability in index.php in FTP Admin 0.1.0 allows remote authenticated users to include and execu... |
| CVE-2007-6234 | — | — | 4.3% | Dec 4, 2007 | index.php in FTP Admin 0.1.0 allows remote attackers to bypass authentication and obtain administrative access via a log... |
| CVE-2007-6235 | — | — | 2.8% | Dec 4, 2007 | A certain ActiveX control in RealNetworks RealPlayer 11 allows remote attackers to cause a denial of service (applicatio... |
| CVE-2007-6236 | — | — | 18.6% | Dec 4, 2007 | Microsoft Windows Media Player (WMP) allows remote attackers to cause a denial of service (application crash) via a cert... |
| CVE-2007-6237 | — | — | 2.7% | Dec 4, 2007 | cp.php in DeluxeBB 1.09 does not verify that the membercookie parameter corresponds to the authenticated member during a... |
| CVE-2007-6238 | — | — | 3.9% | Dec 4, 2007 | Unspecified vulnerability in Apple QuickTime 7.2 on Windows XP allows remote attackers to execute arbitrary code via unk... |
| CVE-2007-6239 | — | — | 26.9% | Dec 4, 2007 | The "cache update reply processing" functionality in Squid 2.x before 2.6.STABLE17 and Squid 3.0 allows remote attackers... |
| CVE-2007-6218 | — | — | 4.1% | Dec 4, 2007 | Multiple PHP remote file inclusion vulnerabilities in Ossigeno CMS 2.2 pre1 allow remote attackers to execute arbitrary ... |
| CVE-2007-6219 | — | — | 1.2% | Dec 4, 2007 | Cross-site scripting (XSS) vulnerability in IBM Tivoli Netcool Security Manager 1.3.0 allows remote attackers to inject ... |
| CVE-2007-6220 | — | — | 1.5% | Dec 4, 2007 | typespeed before 0.6.4 allows remote attackers to cause a denial of service (application crash) via unspecified network ... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now