2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-6055——Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay Portal 4.1.0 and 4.1.1 allows remote attackers to ...
CVE-2007-6056——frame.html in Aida-Web (Aida Web) allows remote attackers to bypass a protection mechanism and obtain comment and task d...
CVE-2007-6057——PHP remote file inclusion vulnerability in index.php in datecomm Social Networking Script (aka Myspace Clone Script) all...
CVE-2007-6058——Multiple SQL injection vulnerabilities in index.php in ProfileCMS 1.0 and earlier allow remote attackers to execute arbi...
CVE-2007-6059——Javamail does not properly handle a series of invalid login attempts in which the same e-mail address is entered as user...
CVE-2007-6060——AhnLab Antivirus 3 Internet Security 2008 Platinum appends data to a filename string at a location indicated by the "Fil...
CVE-2007-5361——The Communication Server in Alcatel-Lucent OmniPCX Enterprise 7.1 and earlier caches an IP address during a TFTP request...
CVE-2007-5899——The output_add_rewrite_var function in PHP before 5.2.5 rewrites local forms in which the ACTION attribute references a ...
CVE-2007-6039——PHP 5.2.5 and earlier allows context-dependent attackers to cause a denial of service (application crash) via a long str...
CVE-2007-6040——The Belkin F5D7230-4 Wireless G Router allows remote attackers to cause a denial of service (degraded networking and log...
CVE-2007-6041——Buffer overflow in the Sequencer::queueMessage function in sequencer.cpp in the server in Rigs of Rods (RoR) before 0.33...
CVE-2007-6042——PHP remote file inclusion vulnerability in fehler.inc.php in SWSoft Confixx Professional 3.2.1 allows remote attackers t...
CVE-2007-6043——The CryptGenRandom function in Microsoft Windows 2000 generates predictable values, which makes it easier for context-de...
CVE-2007-5900——PHP before 5.2.5 allows local users to bypass protection mechanisms configured through php_admin_value or php_admin_flag...
CVE-2007-5898——The (1) htmlentities and (2) htmlspecialchars functions in PHP before 5.2.5 accept partial multibyte sequences, which ha...
CVE-2007-6034——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-6062. Reason: This candidate is a duplicate of...
CVE-2007-6035——SQL injection vulnerability in graph.php in Cacti before 0.8.7a allows remote attackers to execute arbitrary SQL command...
CVE-2007-6036——The parseRTSPRequestString function in LIVE555 Media Server 2007.11.01 and earlier allows remote attackers to cause a de...
CVE-2007-6037——Cross-site scripting (XSS) vulnerability in ws/generic_api_call.pl in Citrix NetScaler 8.0 build 47.8 allows remote atta...
CVE-2007-6038——PHP remote file inclusion vulnerability in xajax_functions.php in the JUser (com_juser) 1.0.14 component for Joomla! all...
CVE-2007-6033HIGH8.8Invensys Wonderware InTouch 8.0 creates a NetDDE share with insecure permissions (Everyone/Full Control), which allows r...
CVE-2007-6029——Unspecified vulnerability in ClamAV 0.91.1 and 0.91.2 allows remote attackers to execute arbitrary code via a crafted e-...
CVE-2007-6030——Unspecified vulnerability in Weird Solutions BOOTPTurbo 1.2 has unknown impact and remote attack vectors. NOTE: this in...
CVE-2007-6031——Unspecified vulnerability in VanDyke VShell 3.0.1 allows remote attackers to cause a denial of service via unspecified v...
CVE-2007-6032——SQL injection vulnerability in calendar/page.asp in Aleris Web Publishing Server 3.0 allows remote attackers to execute ...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now