2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-6221 | — | — | 2.3% | Dec 4, 2007 | TuMusika Evolution 1.7R5 allows remote attackers to obtain configuration information via a direct request to phpinfo.php... |
| CVE-2007-6222 | — | — | 1.1% | Dec 4, 2007 | The CheckCustomerAccess function in functions.php in CRM-CTT Interleave before 4.2.0 (formerly CRM-CTT) does not properl... |
| CVE-2007-6223 | — | — | 1.0% | Dec 4, 2007 | SQL injection vulnerability in garage.php in phpBB Garage 1.2.0 Beta3 allows remote attackers to execute arbitrary SQL c... |
| CVE-2007-6212 | — | — | 1.5% | Dec 4, 2007 | Directory traversal vulnerability in region.php in KML share 1.1 allows remote attackers to read arbitrary files via a .... |
| CVE-2007-6213 | — | — | 6.8% | Dec 4, 2007 | Multiple directory traversal vulnerabilities in mod/chat/index.php in WebED 0.0.9 allow remote attackers to read arbitra... |
| CVE-2007-6214 | — | — | 2.3% | Dec 4, 2007 | Directory traversal vulnerability in include/file_download.php in LearnLoop 2.0 beta7 allows remote attackers to read ar... |
| CVE-2007-6215 | — | — | 2.8% | Dec 4, 2007 | Multiple directory traversal vulnerabilities in play.php in Web-MeetMe 3.0.3 allow remote attackers to read arbitrary fi... |
| CVE-2007-6216 | — | — | 0.3% | Dec 4, 2007 | Race condition in the Fibre Channel protocol (fcp) driver and Devices filesystem (devfs) in Sun Solaris 10 allows local ... |
| CVE-2007-6217 | — | — | 1.7% | Dec 4, 2007 | Multiple SQL injection vulnerabilities in login.asp in Irola My-Time (aka Timesheet) 3.5 allow remote attackers to execu... |
| CVE-2007-6210 | — | — | 0.8% | Dec 4, 2007 | zabbix_agentd 1.1.4 in ZABBIX before 1.4.3 runs "UserParameter" scripts with gid 0, which might allow local users to gai... |
| CVE-2007-6211 | — | — | 0.9% | Dec 4, 2007 | Send ICMP Nasty Garbage (sing) on Debian GNU/Linux allows local users to append to arbitrary files and gain privileges v... |
| CVE-2007-6208 | — | — | 0.3% | Dec 4, 2007 | sylprint.pl in claws mail tools (claws-mail-tools) allows local users to overwrite arbitrary files via a symlink attack ... |
| CVE-2007-6206 | — | — | 0.4% | Dec 4, 2007 | The do_coredump function in fs/exec.c in Linux kernel 2.4.x and 2.6.x up to 2.6.24-rc3, and possibly other versions, doe... |
| CVE-2007-6207 | — | — | 0.3% | Dec 4, 2007 | Xen 3.x, possibly before 3.1.2, when running on IA64 systems, does not check the RID value for mov_to_rr, which allows a... |
| CVE-2007-6209 | — | — | 0.3% | Dec 4, 2007 | Util/difflog.pl in zsh 4.3.4 allows local users to overwrite arbitrary files via a symlink attack on temporary files. |
| CVE-2007-6203 | — | — | 80.7% | Dec 3, 2007 | Apache HTTP Server 2.0.x and 2.2.x does not sanitize the HTTP Method specifier header from an HTTP request when it is re... |
| CVE-2007-5502 | — | — | 2.3% | Dec 1, 2007 | The PRNG implementation for the OpenSSL FIPS Object Module 1.1.1 does not perform auto-seeding during the FIPS self-test... |
| CVE-2007-5742 | — | — | 2.8% | Dec 1, 2007 | Directory traversal vulnerability in the WML engine preprocessor for Wesnoth 1.2.x before 1.2.8, and 1.3.x before 1.3.12... |
| CVE-2007-6196 | — | — | 1.2% | Dec 1, 2007 | Cross-site scripting (XSS) vulnerability in util.php in Calacode @Mail before 5.2 allows remote attackers to inject arbi... |
| CVE-2007-6197 | — | — | 1.6% | Dec 1, 2007 | The Plumtree portal in BEA AquaLogic Interaction 5.0.2 through 5.0.4 and 6.0.1.218452 allows remote attackers to obtain ... |
| CVE-2007-6198 | — | — | 7.0% | Dec 1, 2007 | portal/server.pt in the Plumtree portal in BEA AquaLogic Interaction 5.0.2 through 5.0.4 and 6.0.1.218452 allows wildcar... |
| CVE-2007-6199 | — | — | 4.1% | Dec 1, 2007 | rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access... |
| CVE-2007-6200 | — | — | 5.4% | Dec 1, 2007 | Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allows remote attackers to by... |
| CVE-2007-6201 | — | — | 1.5% | Dec 1, 2007 | Unspecified vulnerability in Wesnoth 1.2.x before 1.2.8, and 1.3.x before 1.3.12, allows attackers to cause a denial of ... |
| CVE-2007-6202 | — | — | 2.2% | Dec 1, 2007 | SQL injection vulnerability in plugins/search/search.php in Neocrome Seditio CMS 121 and earlier allows remote attackers... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now