2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-5470——Microsoft Expression Media stores the catalog password in cleartext in the catalog IVC file, which allows local users to...
CVE-2007-5471——libgssapi before 0.6-13.7, as used by the ISC BIND named daemon in SUSE Linux Enterprise Server 10 SP 1, terminates upon...
CVE-2007-5465——Directory traversal vulnerability in doop CMS 1.3.7 and earlier allows remote attackers to include and execute arbitrary...
CVE-2007-5466——Multiple buffer overflows in eXtremail 2.1.1 and earlier allow remote attackers to (1) have an unknown impact by sending...
CVE-2007-5467——Integer overflow in eXtremail 2.1.1 and earlier allows remote attackers to cause a denial of service, and possibly execu...
CVE-2007-5460MEDIUM4.6Microsoft ActiveSync 4.1, as used in Windows Mobile 5.0, uses weak encryption (XOR obfuscation with a fixed key) when se...
CVE-2007-5462——Unspecified vulnerability in the Sun Solaris RPC services library (librpcsvc) on Solaris 8 through 10 allows remote atta...
CVE-2007-5464——Stack-based buffer overflow in Live for Speed 0.5X10 and earlier allows remote authenticated users to cause a denial of ...
CVE-2007-5463——ideal_process.php in the iDEAL payment module in ViArt Shop 3.3 beta and earlier might allow remote attackers to obtain ...
CVE-2007-5461——Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 through 5.5.25, and 6.0....
CVE-2007-5457——Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash...
CVE-2007-5459——Cross-site scripting (XSS) vulnerability in the sidebar HTML page in the MouseoverDictionary before 0.6.2 extension for ...
CVE-2007-5458——SQL injection vulnerability in index.php in the newsletter module 1.0 for KwsPHP, when magic_quotes_gpc is disabled, all...
CVE-2007-5196——Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in...
CVE-2007-5195——Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in...
CVE-2007-5200——hugin, as used on various operating systems including SUSE openSUSE 10.2 and 10.3, allows local users to overwrite arbit...
CVE-2007-5441——CMS Made Simple 1.1.3.1 does not check the permissions assigned to users in some situations, which allows remote authent...
CVE-2007-5443——Multiple cross-site scripting (XSS) vulnerabilities in CMS Made Simple 1.1.3.1 allow remote attackers to inject arbitrar...
CVE-2007-5442——CMS Made Simple 1.1.3.1 does not check the permissions assigned to users who attempt uploads, which allows remote authen...
CVE-2007-5447——ioncube_loader_win_5.2.dll in the ionCube Loader 6.5 extension for PHP 5.2.4 does not follow safe_mode and disable_funct...
CVE-2007-5444——CMS Made Simple 1.1.3.1 allows remote attackers to obtain the full path via a direct request for unspecified files.
CVE-2007-5445——Buffer overflow in the DB Software Laboratory VImpX (VImpAX1) ActiveX control in VImpX.ocx 4.7.3.0 allows remote attacke...
CVE-2007-5446——Absolute path traversal vulnerability in a certain ActiveX control in PBEmail7Ax.dll in PBEmail 7 ActiveX Edition allows...
CVE-2007-5448——Madwifi 0.9.3.2 and earlier allows remote attackers to cause a denial of service (panic) via a beacon frame with a large...
CVE-2007-5449——SQL injection vulnerability in searchresult.php in Softbiz Recipes Portal Script allows remote attackers to execute arbi...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now