2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-5777Blue-Collar Productions i-Gallery 3.4 stores sensitive information under the web root with insufficient access control, ...
CVE-2007-5779Buffer overflow in the GomManager (GomWeb Control) ActiveX control in GomWeb3.dll 1.0.0.12 in Gretech Online Movie Playe...
CVE-2007-5780PHP remote file inclusion vulnerability in pub/pub08_comments.php in teatro 1.6 allows remote attackers to execute arbit...
CVE-2007-5781PHP remote file inclusion vulnerability in inc/sige_init.php in Sige 0.1 allows remote attackers to execute arbitrary PH...
CVE-2007-5782Directory traversal vulnerability in dl.php in FireConfig 0.5 allows remote attackers to read arbitrary files via a .. (...
CVE-2007-5783SQL injection vulnerability in emc.asp in emagiC CMS.Net 4.0 allows remote attackers to execute arbitrary SQL commands v...
CVE-2007-5784PHP remote file inclusion vulnerability in index.php in CaupoShop Pro 2.x allows remote attackers to execute arbitrary P...
CVE-2007-5785SQL injection vulnerability in file.php in JobSite Professional 2.0 allows remote attackers to execute arbitrary SQL com...
CVE-2007-5786Multiple PHP remote file inclusion vulnerabilities in GoSamba 1.0.1 allow remote attackers to execute arbitrary PHP code...
CVE-2007-5787Micro Login System 1.0 stores sensitive information under the web root with insufficient access control, which allows re...
CVE-2007-5788Buffer overflow in the SIP parser on the Grandstream HT-488 0.1 allows remote attackers to cause a denial of service (de...
CVE-2007-5789The Grandstream HT-488 0.1 allows remote attackers to cause a denial of service (device crash) via a flood of fragmented...
CVE-2007-5790The Globe7 soft phone client 7.3 uses weak cryptography (reversed sequence of binary values) for the password, which mig...
CVE-2007-5791The Vonage Motorola Phone Adapter VT 2142-VD does not properly verify that a SIP INVITE message originated from a legiti...
CVE-2007-5792The Vonage Motorola Phone Adapter VT 2142-VD does not encrypt RTP packets, which might allow remote attackers to eavesdr...
CVE-2007-5778HIGH7.5Mobile Spy (1) stores login credentials in cleartext under the RetinaxStudios registry key, and (2) sends login credenti...
CVE-2007-5775CRITICAL9.8Unspecified vulnerability in BitDefender allows attackers to execute arbitrary code via unspecified vectors, aka EEYEB-2...
CVE-2007-5768The Globe7 soft phone client 7.3 sends username and password information in cleartext, which allows remote attackers to ...
CVE-2007-4351Off-by-one error in the ippReadIO function in cups/ipp.c in CUPS 1.3.3 allows remote attackers to cause a denial of serv...
CVE-2007-2957Integer overflow in McAfee E-Business Server before 8.5.3 for Solaris, and before 8.1.2 for Linux, HP-UX, and AIX, allow...
CVE-2007-5751Liferea before 1.4.6 uses weak permissions (0644) for the feedlist.opml backup file, which allows local users to obtain ...
CVE-2007-5752adduser.php in PHP-AGTC Membership (AGTC-Membership) System 1.1a does not require authentication, which allows remote at...
CVE-2007-5753Unspecified vulnerability in Light FMan PHP (lfman or lightfman) before 2.0rc1 has unknown impact and attack vectors rel...
CVE-2007-4345Buffer overflow in IMail Client 9.22, as shipped with IPSwitch IMail Server 2006.22, allows remote attackers to execute ...
CVE-2007-2263Heap-based buffer overflow in RealNetworks RealPlayer 10.0, 10.1, and possibly 10.5, RealOne Player, and RealPlayer Ente...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now