2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-5917 | — | — | 0.6% | Nov 10, 2007 | Cross-site request forgery (CSRF) vulnerability in admin/admin_account.php in Skalinks 1.5 and earlier allows remote att... |
| CVE-2007-5918 | — | — | 0.8% | Nov 10, 2007 | Cross-site request forgery (CSRF) vulnerability in edit.php in the MS TopSites add-on for PHP-Nuke does not verify that ... |
| CVE-2007-5919 | — | — | 1.2% | Nov 10, 2007 | MyWebFTP, possibly 5.3.2, stores sensitive information under the web root with insufficient access control, which allows... |
| CVE-2007-5920 | — | — | 2.3% | Nov 10, 2007 | index.php in Domenico Mancini PicoFlat CMS before 0.4.18 allows remote attackers to include certain files via unspecifie... |
| CVE-2007-5921 | — | — | 0.3% | Nov 10, 2007 | Unspecified vulnerability in the ioctl interface in the Solaris Volume Manager (SVM) in Sun Solaris 9 and 10 allows loca... |
| CVE-2007-5922 | — | — | 1.0% | Nov 10, 2007 | The modules/mdop.m in the Cypress 1.0k script for BitchX, as downloaded from a distribution site in November 2007, conta... |
| CVE-2007-5923 | — | — | 1.4% | Nov 10, 2007 | Cross-site scripting (XSS) vulnerability in forms/smpwservices.fcc in CA (formerly Computer Associates) eTrust SiteMinde... |
| CVE-2007-5924 | — | — | 1.2% | Nov 10, 2007 | Cross-site scripting (XSS) vulnerability in the Web Server (HTTP) task in IBM Lotus Domino before 6.5.6 FP2, and 7.x bef... |
| CVE-2007-5925 | — | — | 11.4% | Nov 10, 2007 | The convert_search_mode_to_innobase function in ha_innodb.cc in the InnoDB engine in MySQL 5.1.23-BK and earlier allows ... |
| CVE-2007-5926 | — | — | 3.4% | Nov 10, 2007 | OpenBase 10.0.5 and earlier allows remote authenticated users to execute arbitrary commands via shell metacharacters in ... |
| CVE-2007-5929 | — | — | 4.1% | Nov 10, 2007 | Buffer overflow in OpenBase 10.0.5 and earlier might allow remote authenticated users to execute arbitrary code or cause... |
| CVE-2007-4570 | — | — | 0.3% | Nov 10, 2007 | Algorithmic complexity vulnerability in the MCS translation daemon in mcstrans 0.2.3 allows local users to cause a denia... |
| CVE-2007-5396 | — | — | 2.5% | Nov 10, 2007 | Format string vulnerability in the ext_yahoo_contact_added function in yahoo.c in Miranda IM 0.7.1 allows remote attacke... |
| CVE-2007-5906 | — | — | 0.3% | Nov 9, 2007 | Xen 3.1.1 allows virtual guest system users to cause a denial of service (hypervisor crash) by using a debug register (D... |
| CVE-2007-5907 | — | — | 0.4% | Nov 9, 2007 | Xen 3.1.1 does not prevent modification of the CR4 TSC from applications, which allows pv guests to cause a denial of se... |
| CVE-2007-5908 | — | — | — | Nov 9, 2007 | Rejected reason: Buffer overflow in the (1) sysfs_show_available_clocksources and (2) sysfs_show_current_clocksources fu... |
| CVE-2007-5904 | — | — | 2.4% | Nov 9, 2007 | Multiple buffer overflows in CIFS VFS in Linux kernel 2.6.23 and earlier allows remote attackers to cause a denial of se... |
| CVE-2007-5897 | — | — | 3.7% | Nov 8, 2007 | Buffer overflow in MDSYS.SDO_CS in Oracle Database Server 8iR3, 9iR1, 9iR2 up to 9.2.0.6, and 10gR1 up to 10.1.0.4 allow... |
| CVE-2007-4517 | — | — | 5.4% | Nov 8, 2007 | Buffer overflow in the XDB.XDB_PITRIG_PKG.PITRIG_DROPMETADATA procedure in Oracle 10g R2 allows remote authenticated use... |
| CVE-2007-5766 | — | — | 1.3% | Nov 8, 2007 | SQL injection vulnerability in okxLOV.jsp in Oracle E-Business Suite 11 and 12 allows remote attackers to execute arbitr... |
| CVE-2007-5896 | — | — | 1.2% | Nov 8, 2007 | Mozilla Firefox 2.0.0.9 allows remote attackers to cause a denial of service (CPU consumption and crash) via an iframe w... |
| CVE-2007-4223 | — | — | 7.4% | Nov 8, 2007 | Dbgv.sys in Microsoft Sysinternals DebugView before 4.72 provides an unspecified mechanism for copying data into kernel ... |
| CVE-2007-3921 | — | — | 0.3% | Nov 8, 2007 | gforge 3.1 and 4.5.14 allows local users to truncate arbitrary files via a symlink attack on temporary files. |
| CVE-2007-4129 | — | — | 0.3% | Nov 8, 2007 | CoolKey 1.1.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files in the /tmp/.pk11i... |
| CVE-2007-4352 | — | — | 7.0% | Nov 8, 2007 | Array index error in the DCTStream::readProgressiveDataUnit method in xpdf/Stream.cc in Xpdf 3.02pl1, as used in poppler... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now