2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-5461Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 through 5.5.25, and 6.0....
CVE-2007-5457Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash...
CVE-2007-5459Cross-site scripting (XSS) vulnerability in the sidebar HTML page in the MouseoverDictionary before 0.6.2 extension for ...
CVE-2007-5458SQL injection vulnerability in index.php in the newsletter module 1.0 for KwsPHP, when magic_quotes_gpc is disabled, all...
CVE-2007-5196Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in...
CVE-2007-5200hugin, as used on various operating systems including SUSE openSUSE 10.2 and 10.3, allows local users to overwrite arbit...
CVE-2007-5195Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in...
CVE-2007-5441CMS Made Simple 1.1.3.1 does not check the permissions assigned to users in some situations, which allows remote authent...
CVE-2007-5443Multiple cross-site scripting (XSS) vulnerabilities in CMS Made Simple 1.1.3.1 allow remote attackers to inject arbitrar...
CVE-2007-5442CMS Made Simple 1.1.3.1 does not check the permissions assigned to users who attempt uploads, which allows remote authen...
CVE-2007-5447ioncube_loader_win_5.2.dll in the ionCube Loader 6.5 extension for PHP 5.2.4 does not follow safe_mode and disable_funct...
CVE-2007-5444CMS Made Simple 1.1.3.1 allows remote attackers to obtain the full path via a direct request for unspecified files.
CVE-2007-5445Buffer overflow in the DB Software Laboratory VImpX (VImpAX1) ActiveX control in VImpX.ocx 4.7.3.0 allows remote attacke...
CVE-2007-5446Absolute path traversal vulnerability in a certain ActiveX control in PBEmail7Ax.dll in PBEmail 7 ActiveX Edition allows...
CVE-2007-5448Madwifi 0.9.3.2 and earlier allows remote attackers to cause a denial of service (panic) via a beacon frame with a large...
CVE-2007-5449SQL injection vulnerability in searchresult.php in Softbiz Recipes Portal Script allows remote attackers to execute arbi...
CVE-2007-5450Unspecified vulnerability in Safari on the Apple iPod touch (aka iTouch) and iPhone 1.1.1 allows user-assisted remote at...
CVE-2007-5451PHP remote file inclusion vulnerability in admin.color.php in the com_colorlab (aka com_color) 1.0 component for Joomla!...
CVE-2007-5452Multiple SQL injection vulnerabilities in php-stats.recjs.php in Php-Stats 0.1.9.2 allow remote attackers to execute arb...
CVE-2007-5453Multiple eval injection vulnerabilities in Php-Stats 0.1.9.2 allow remote authenticated administrators to execute arbitr...
CVE-2007-5454Directory traversal vulnerability in index.php in PHP File Sharing System 1.5.1 allows remote attackers to list or creat...
CVE-2007-5455Cross-site scripting (XSS) vulnerability in wxis.exe in WWWISIS 7.1 and earlier allows remote attackers to inject arbitr...
CVE-2007-5456Microsoft Internet Explorer 7 and earlier allows remote attackers to bypass the "File Download - Security Warning" dialo...
CVE-2007-5440Multiple PHP remote file inclusion vulnerabilities in CRS Manager allow remote attackers to execute arbitrary PHP code v...
CVE-2007-4995Off-by-one error in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8f allows remote attackers to execute arbitrary ...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now