2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-3919 | — | — | 0.3% | Oct 28, 2007 | (1) xenbaked and (2) xenmon.py in Xen 3.1 and earlier allow local users to truncate arbitrary files via a symlink attack... |
| CVE-2007-5682 | — | — | 2.6% | Oct 26, 2007 | Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWiki before 1.9.8.2 allows remote attackers to execu... |
| CVE-2007-5683 | — | — | 0.9% | Oct 26, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in TikiWiki 1.9.8.1 and earlier allow remote attackers to inject arb... |
| CVE-2007-5684 | — | — | 3.0% | Oct 26, 2007 | Multiple directory traversal vulnerabilities in TikiWiki 1.9.8.1 and earlier allow remote attackers to include and execu... |
| CVE-2007-2983 | — | — | 8.8% | Oct 25, 2007 | Multiple buffer overflows in the British Telecommunications Consumer webhelper ActiveX control before 2.0.0.8 in btwebco... |
| CVE-2007-5679 | — | — | 1.2% | Oct 25, 2007 | SQL injection vulnerability in index.php in DeeEmm.com DM CMS 0.7.0.Beta allows remote attackers to execute arbitrary SQ... |
| CVE-2007-5673 | — | — | 1.1% | Oct 24, 2007 | Cross-site scripting (XSS) vulnerability in cgi-bin/webif.exe in ifnet WebIf allows remote attackers to inject arbitrary... |
| CVE-2007-5674 | — | — | 2.1% | Oct 24, 2007 | Directory traversal vulnerability in index.php in InstaGuide Weather (aka Weather for PHP) 1.0, when magic_quotes_gpc is... |
| CVE-2007-5675 | — | — | 3.1% | Oct 24, 2007 | Stack-based buffer overflow in the DebugPrint function in MultiXTpm Application Server before 4.0.2d allows remote attac... |
| CVE-2007-5676 | — | — | 2.3% | Oct 24, 2007 | PHP remote file inclusion vulnerability in modules/Forums/favorites.php in PHP-Nuke Platinum 7.6.b.5 allows remote attac... |
| CVE-2007-5677 | — | — | 1.5% | Oct 24, 2007 | Cross-site scripting (XSS) vulnerability in shoutbox/blocco.php in Hackish BETA 1.1 allows remote attackers to inject ar... |
| CVE-2007-5678 | — | — | 1.5% | Oct 24, 2007 | SQL injection vulnerability in the Music module in phpBasic allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2007-5336 | — | — | — | Oct 24, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-5339. Reason: This candidate is a reservation ... |
| CVE-2007-5335 | — | — | 1.3% | Oct 24, 2007 | Mozilla Firefox 2.0 before 2.0.0.8 allows remote attackers to obtain sensitive system information by using the addMicros... |
| CVE-2007-5641 | — | — | 40.3% | Oct 23, 2007 | Multiple PHP remote file inclusion vulnerabilities in PHP Project Management 0.8.10 and earlier allow remote attackers t... |
| CVE-2007-5643 | — | — | 1.2% | Oct 23, 2007 | Multiple SQL injection vulnerabilities in Lussumo Vanilla 1.1.3 and earlier allow remote attackers to execute arbitrary ... |
| CVE-2007-5642 | — | — | 6.2% | Oct 23, 2007 | Multiple directory traversal vulnerabilities in PHP Project Management 0.8.10 and earlier allow remote attackers to incl... |
| CVE-2007-5644 | — | — | 2.1% | Oct 23, 2007 | Lussumo Vanilla 1.1.3 and earlier does not require admin privileges for (1) ajax/sortcategories.php and (2) ajax/sortrol... |
| CVE-2007-5646 | — | — | 3.0% | Oct 23, 2007 | SQL injection vulnerability in Sources/Search.php in Simple Machines Forum (SMF) 1.1.3, when MySQL 5 is used, allows rem... |
| CVE-2007-5647 | — | — | 1.5% | Oct 23, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in SocketKB 1.1.5 allow remote attackers to inject arbitrary web scr... |
| CVE-2007-5648 | — | — | 1.5% | Oct 23, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in rnote.php in rNote 0.9.7.5 allow remote attackers to inject arbit... |
| CVE-2007-5649 | — | — | 1.5% | Oct 23, 2007 | Cross-site scripting (XSS) vulnerability in lostpwd.php in Creative Digital Resources SocketMail 2.2.1 allows remote att... |
| CVE-2007-5650 | — | — | 2.4% | Oct 23, 2007 | Directory traversal vulnerability in system.php in ReloadCMS 1.2.7 allows remote attackers to include and execute arbitr... |
| CVE-2007-5651 | — | — | 1.8% | Oct 23, 2007 | Unspecified vulnerability in the Extensible Authentication Protocol (EAP) implementation in Cisco IOS 12.3 and 12.4 on C... |
| CVE-2007-5652 | — | — | 1.8% | Oct 23, 2007 | IBM DB2 UDB 9.1 before Fixpak 4 does not properly manage storage of a list containing authentication information, which ... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now