2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-5461——Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 through 5.5.25, and 6.0....
CVE-2007-5457——Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash...
CVE-2007-5459——Cross-site scripting (XSS) vulnerability in the sidebar HTML page in the MouseoverDictionary before 0.6.2 extension for ...
CVE-2007-5458——SQL injection vulnerability in index.php in the newsletter module 1.0 for KwsPHP, when magic_quotes_gpc is disabled, all...
CVE-2007-5196——Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in...
CVE-2007-5200——hugin, as used on various operating systems including SUSE openSUSE 10.2 and 10.3, allows local users to overwrite arbit...
CVE-2007-5195——Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in...
CVE-2007-5441——CMS Made Simple 1.1.3.1 does not check the permissions assigned to users in some situations, which allows remote authent...
CVE-2007-5443——Multiple cross-site scripting (XSS) vulnerabilities in CMS Made Simple 1.1.3.1 allow remote attackers to inject arbitrar...
CVE-2007-5442——CMS Made Simple 1.1.3.1 does not check the permissions assigned to users who attempt uploads, which allows remote authen...
CVE-2007-5447——ioncube_loader_win_5.2.dll in the ionCube Loader 6.5 extension for PHP 5.2.4 does not follow safe_mode and disable_funct...
CVE-2007-5444——CMS Made Simple 1.1.3.1 allows remote attackers to obtain the full path via a direct request for unspecified files.
CVE-2007-5445——Buffer overflow in the DB Software Laboratory VImpX (VImpAX1) ActiveX control in VImpX.ocx 4.7.3.0 allows remote attacke...
CVE-2007-5446——Absolute path traversal vulnerability in a certain ActiveX control in PBEmail7Ax.dll in PBEmail 7 ActiveX Edition allows...
CVE-2007-5448——Madwifi 0.9.3.2 and earlier allows remote attackers to cause a denial of service (panic) via a beacon frame with a large...
CVE-2007-5449——SQL injection vulnerability in searchresult.php in Softbiz Recipes Portal Script allows remote attackers to execute arbi...
CVE-2007-5450——Unspecified vulnerability in Safari on the Apple iPod touch (aka iTouch) and iPhone 1.1.1 allows user-assisted remote at...
CVE-2007-5451——PHP remote file inclusion vulnerability in admin.color.php in the com_colorlab (aka com_color) 1.0 component for Joomla!...
CVE-2007-5452——Multiple SQL injection vulnerabilities in php-stats.recjs.php in Php-Stats 0.1.9.2 allow remote attackers to execute arb...
CVE-2007-5453——Multiple eval injection vulnerabilities in Php-Stats 0.1.9.2 allow remote authenticated administrators to execute arbitr...
CVE-2007-5454——Directory traversal vulnerability in index.php in PHP File Sharing System 1.5.1 allows remote attackers to list or creat...
CVE-2007-5455——Cross-site scripting (XSS) vulnerability in wxis.exe in WWWISIS 7.1 and earlier allows remote attackers to inject arbitr...
CVE-2007-5456——Microsoft Internet Explorer 7 and earlier allows remote attackers to bypass the "File Download - Security Warning" dialo...
CVE-2007-5440——Multiple PHP remote file inclusion vulnerabilities in CRS Manager allow remote attackers to execute arbitrary PHP code v...
CVE-2007-4995——Off-by-one error in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8f allows remote attackers to execute arbitrary ...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now