2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-6753——Untrusted search path vulnerability in Shell32.dll in Microsoft Windows 2000, Windows XP, Windows Vista, Windows Server ...
CVE-2007-6752——Cross-site request forgery (CSRF) vulnerability in Drupal 7.12 and earlier allows remote attackers to hijack the authent...
CVE-2007-6744——Flexera Macrovision InstallShield before 2008 sends a digital-signature password to an unintended application during cer...
CVE-2007-6751——Cross-site scripting (XSS) vulnerability in the MailForm plugin before 1.20 for Movable Type allows remote attackers to ...
CVE-2007-6750——The Apache HTTP Server 1.x and 2.x allows remote attackers to cause a denial of service (daemon outage) via partial HTTP...
CVE-2007-6743——Double free vulnerability in IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0005 allows remote authenti...
CVE-2007-6742——The get_filter_list function in IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0006 does not properly p...
CVE-2007-1783——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-1685. Reason: This candidate is a duplicate of...
CVE-2007-6741——The ftp_PORT function in FTPServer.py in pyftpdlib before 0.2.0 does not prevent TCP connections to privileged ports if ...
CVE-2007-6740——The ftp_STOU function in FTPServer.py in pyftpdlib before 0.2.0 does not limit the number of attempts to discover a uniq...
CVE-2007-6739——FTPServer.py in pyftpdlib before 0.2.0 allows remote attackers to cause a denial of service via a long command.
CVE-2007-6738——pyftpdlib before 0.1.1 does not choose a random value for the port associated with the PASV command, which makes it easi...
CVE-2007-6737——FTPServer.py in pyftpdlib before 0.2.0 does not increment the attempted_logins count for a USER command that specifies a...
CVE-2007-6736——Multiple directory traversal vulnerabilities in FTPServer.py in pyftpdlib before 0.2.0 allow remote authenticated users ...
CVE-2007-6735——NWFTPD.nlm before 5.08.06 in the FTP server in Novell NetWare does not properly handle partial matches for container nam...
CVE-2007-6734——NWFTPD.nlm before 5.08.07 in the FTP server in Novell NetWare 6.5 SP7 does not properly implement the FTPREST.TXT NOREMO...
CVE-2007-6733——The nfs_lock function in fs/nfs/file.c in the Linux kernel 2.6.9 does not properly remove POSIX locks on files that are ...
CVE-2007-2281——Integer overflow in the _ncp32._NtrpTCPReceiveMsg function in rds.exe in the Cell Manager Database Service in the Applic...
CVE-2007-2280——Stack-based buffer overflow in OmniInet.exe (aka the backup client service daemon) in the Application Recovery Manager c...
CVE-2007-5475——Multiple buffer overflows in the Marvell wireless driver, as used in Linksys WAP4400N Wi-Fi access point with firmware 1...
CVE-2007-6732——Multiple buffer overflows in the dtt_load function in loaders/dtt_load.c Extended Module Player (XMP) 2.5.1 and earlier ...
CVE-2007-6731——Extended Module Player (XMP) 2.5.1 and earlier allow remote attackers to execute arbitrary code via an OXM file with a n...
CVE-2007-6730——Multiple cross-site request forgery (CSRF) vulnerabilities in the web management interface in the ZyXEL P-330W router al...
CVE-2007-6729——Cross-site scripting (XSS) vulnerability in the web management interface in the ZyXEL P-330W router allows remote attack...
CVE-2007-6728——Cross-site scripting (XSS) vulnerability in XMB 1.5 allows remote attackers to inject arbitrary web script or HTML via t...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now