2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-5470Microsoft Expression Media stores the catalog password in cleartext in the catalog IVC file, which allows local users to...
CVE-2007-5471libgssapi before 0.6-13.7, as used by the ISC BIND named daemon in SUSE Linux Enterprise Server 10 SP 1, terminates upon...
CVE-2007-5465Directory traversal vulnerability in doop CMS 1.3.7 and earlier allows remote attackers to include and execute arbitrary...
CVE-2007-5466Multiple buffer overflows in eXtremail 2.1.1 and earlier allow remote attackers to (1) have an unknown impact by sending...
CVE-2007-5467Integer overflow in eXtremail 2.1.1 and earlier allows remote attackers to cause a denial of service, and possibly execu...
CVE-2007-5460MEDIUM4.6Microsoft ActiveSync 4.1, as used in Windows Mobile 5.0, uses weak encryption (XOR obfuscation with a fixed key) when se...
CVE-2007-5462Unspecified vulnerability in the Sun Solaris RPC services library (librpcsvc) on Solaris 8 through 10 allows remote atta...
CVE-2007-5464Stack-based buffer overflow in Live for Speed 0.5X10 and earlier allows remote authenticated users to cause a denial of ...
CVE-2007-5463ideal_process.php in the iDEAL payment module in ViArt Shop 3.3 beta and earlier might allow remote attackers to obtain ...
CVE-2007-5461Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 through 5.5.25, and 6.0....
CVE-2007-5457Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash...
CVE-2007-5459Cross-site scripting (XSS) vulnerability in the sidebar HTML page in the MouseoverDictionary before 0.6.2 extension for ...
CVE-2007-5458SQL injection vulnerability in index.php in the newsletter module 1.0 for KwsPHP, when magic_quotes_gpc is disabled, all...
CVE-2007-5196Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in...
CVE-2007-5195Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in...
CVE-2007-5200hugin, as used on various operating systems including SUSE openSUSE 10.2 and 10.3, allows local users to overwrite arbit...
CVE-2007-5441CMS Made Simple 1.1.3.1 does not check the permissions assigned to users in some situations, which allows remote authent...
CVE-2007-5443Multiple cross-site scripting (XSS) vulnerabilities in CMS Made Simple 1.1.3.1 allow remote attackers to inject arbitrar...
CVE-2007-5442CMS Made Simple 1.1.3.1 does not check the permissions assigned to users who attempt uploads, which allows remote authen...
CVE-2007-5447ioncube_loader_win_5.2.dll in the ionCube Loader 6.5 extension for PHP 5.2.4 does not follow safe_mode and disable_funct...
CVE-2007-5444CMS Made Simple 1.1.3.1 allows remote attackers to obtain the full path via a direct request for unspecified files.
CVE-2007-5445Buffer overflow in the DB Software Laboratory VImpX (VImpAX1) ActiveX control in VImpX.ocx 4.7.3.0 allows remote attacke...
CVE-2007-5446Absolute path traversal vulnerability in a certain ActiveX control in PBEmail7Ax.dll in PBEmail 7 ActiveX Edition allows...
CVE-2007-5448Madwifi 0.9.3.2 and earlier allows remote attackers to cause a denial of service (panic) via a beacon frame with a large...
CVE-2007-5449SQL injection vulnerability in searchresult.php in Softbiz Recipes Portal Script allows remote attackers to execute arbi...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now