2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-5727 | — | — | 1.9% | Oct 30, 2007 | Incomplete blacklist vulnerability in the stripScripts function in common.php in OneOrZero Helpdesk 1.6.5.4, 1.6.4.2, an... |
| CVE-2007-5728 | — | — | 14.6% | Oct 30, 2007 | Cross-site scripting (XSS) vulnerability in phpPgAdmin 3.5 to 4.1.1, and possibly 4.1.2, allows remote attackers to inje... |
| CVE-2007-4862 | — | — | 1.8% | Oct 30, 2007 | Cross-site scripting (XSS) vulnerability in admin/menu.php in SAXON 5.4 allows remote attackers to inject arbitrary web ... |
| CVE-2007-4863 | — | — | 1.2% | Oct 30, 2007 | SQL injection vulnerability in example.php in SAXON 5.4 allows remote attackers to execute arbitrary SQL commands via th... |
| CVE-2007-1323 | — | — | — | Oct 30, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-2893. Reason: this candidate was intended for ... |
| CVE-2007-4861 | — | — | 1.8% | Oct 30, 2007 | SAXON 5.4, with display_errors enabled, allows remote attackers to obtain sensitive information via (1) a direct request... |
| CVE-2007-5707 | — | — | 3.7% | Oct 30, 2007 | OpenLDAP before 2.3.39 allows remote attackers to cause a denial of service (slapd crash) via an LDAP request with a mal... |
| CVE-2007-5709 | — | — | 10.9% | Oct 30, 2007 | Stack-based buffer overflow in Sony SonicStage CONNECT Player (CP) 4.3 allows remote attackers to execute arbitrary code... |
| CVE-2007-5708 | — | — | 2.6% | Oct 30, 2007 | slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates m... |
| CVE-2007-5710 | — | — | 7.0% | Oct 30, 2007 | Cross-site scripting (XSS) vulnerability in wp-admin/edit-post-rows.php in WordPress 2.3 allows remote attackers to inje... |
| CVE-2007-5711 | — | — | 1.8% | Oct 30, 2007 | Massive Entertainment World in Conflict 1.001 and earlier allows remote attackers to cause a denial of service (failed a... |
| CVE-2007-5712 | — | — | 1.8% | Oct 30, 2007 | The internationalization (i18n) framework in Django 0.91, 0.95, 0.95.1, and 0.96, and as used in other products such as ... |
| CVE-2007-5713 | — | — | 2.3% | Oct 30, 2007 | Off-by-one error in the GeoIP module in the AMX Mod X 1.76d plugin for Half-Life Server might allow attackers to execute... |
| CVE-2007-5714 | — | — | 1.8% | Oct 30, 2007 | The Gentoo ebuild of MLDonkey before 2.9.0-r3 has a p2p user account with an empty default password and valid login shel... |
| CVE-2007-5715 | — | — | 1.1% | Oct 30, 2007 | DenyHosts 2.6 processes OpenSSH sshd "not listed in AllowUsers" log messages with an incorrect regular expression that d... |
| CVE-2007-4348 | — | — | 1.2% | Oct 30, 2007 | Cross-site scripting (XSS) vulnerability in the CAD service in IBM Tivoli Storage Manager (TSM) Client 5.3.5.3 and 5.4.1... |
| CVE-2007-5702 | — | — | 1.4% | Oct 29, 2007 | Cross-site scripting (XSS) vulnerability in swamp/action/LoginActions (aka the login box) in the Novell OpenSUSE SWAMP W... |
| CVE-2007-5703 | — | — | 1.9% | Oct 29, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in (1) Request-spk.xuda and (2) Add-msie-request.xuda in RSA KEON Re... |
| CVE-2007-5704 | — | — | 1.3% | Oct 29, 2007 | Multiple SQL injection vulnerabilities in CodeWidgets.com Online Event Registration Template allow remote attackers to e... |
| CVE-2007-5705 | — | — | 0.9% | Oct 29, 2007 | Unspecified vulnerability in the Settings component in the administration system in Jeebles Directory 2.9.60 allows remo... |
| CVE-2007-5706 | — | — | 2.7% | Oct 29, 2007 | Absolute path traversal vulnerability in download.php in Jeebles Directory 2.9.60 allows remote attackers to read arbitr... |
| CVE-2007-5413 | — | — | 2.8% | Oct 29, 2007 | httpd.tkd in Radia Integration Server in Hewlett-Packard (HP) OpenView Configuration Management (CM) Infrastructure 4.0 ... |
| CVE-2007-4222 | — | — | 4.1% | Oct 29, 2007 | Buffer overflow in the TagAttributeListCopy function in nnotes.dll in IBM Lotus Notes before 7.0.3 allows user-assisted ... |
| CVE-2007-4999 | — | — | 1.8% | Oct 29, 2007 | libpurple in Pidgin 2.1.0 through 2.2.1, when using HTML logging, allows remote attackers to cause a denial of service (... |
| CVE-2007-5697 | — | — | 2.3% | Oct 29, 2007 | Multiple PHP remote file inclusion vulnerabilities in PHP Image 1.2 allow remote attackers to execute arbitrary PHP code... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now