2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-5470 | — | — | 2.0% | Oct 16, 2007 | Microsoft Expression Media stores the catalog password in cleartext in the catalog IVC file, which allows local users to... |
| CVE-2007-5471 | — | — | 2.6% | Oct 16, 2007 | libgssapi before 0.6-13.7, as used by the ISC BIND named daemon in SUSE Linux Enterprise Server 10 SP 1, terminates upon... |
| CVE-2007-5465 | — | — | 2.5% | Oct 15, 2007 | Directory traversal vulnerability in doop CMS 1.3.7 and earlier allows remote attackers to include and execute arbitrary... |
| CVE-2007-5466 | — | — | 19.9% | Oct 15, 2007 | Multiple buffer overflows in eXtremail 2.1.1 and earlier allow remote attackers to (1) have an unknown impact by sending... |
| CVE-2007-5467 | — | — | 13.5% | Oct 15, 2007 | Integer overflow in eXtremail 2.1.1 and earlier allows remote attackers to cause a denial of service, and possibly execu... |
| CVE-2007-5460 | MEDIUM | 4.6 | 2.2% | Oct 15, 2007 | Microsoft ActiveSync 4.1, as used in Windows Mobile 5.0, uses weak encryption (XOR obfuscation with a fixed key) when se... |
| CVE-2007-5462 | — | — | 2.2% | Oct 15, 2007 | Unspecified vulnerability in the Sun Solaris RPC services library (librpcsvc) on Solaris 8 through 10 allows remote atta... |
| CVE-2007-5464 | — | — | 4.3% | Oct 15, 2007 | Stack-based buffer overflow in Live for Speed 0.5X10 and earlier allows remote authenticated users to cause a denial of ... |
| CVE-2007-5463 | — | — | 1.0% | Oct 15, 2007 | ideal_process.php in the iDEAL payment module in ViArt Shop 3.3 beta and earlier might allow remote attackers to obtain ... |
| CVE-2007-5461 | — | — | 39.7% | Oct 15, 2007 | Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 through 5.5.25, and 6.0.... |
| CVE-2007-5457 | — | — | 37.6% | Oct 14, 2007 | Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash... |
| CVE-2007-5459 | — | — | 1.0% | Oct 14, 2007 | Cross-site scripting (XSS) vulnerability in the sidebar HTML page in the MouseoverDictionary before 0.6.2 extension for ... |
| CVE-2007-5458 | — | — | 0.9% | Oct 14, 2007 | SQL injection vulnerability in index.php in the newsletter module 1.0 for KwsPHP, when magic_quotes_gpc is disabled, all... |
| CVE-2007-5196 | — | — | 2.1% | Oct 14, 2007 | Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in... |
| CVE-2007-5195 | — | — | 1.8% | Oct 14, 2007 | Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in... |
| CVE-2007-5200 | — | — | 0.4% | Oct 14, 2007 | hugin, as used on various operating systems including SUSE openSUSE 10.2 and 10.3, allows local users to overwrite arbit... |
| CVE-2007-5441 | — | — | 1.1% | Oct 14, 2007 | CMS Made Simple 1.1.3.1 does not check the permissions assigned to users in some situations, which allows remote authent... |
| CVE-2007-5443 | — | — | 1.1% | Oct 14, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in CMS Made Simple 1.1.3.1 allow remote attackers to inject arbitrar... |
| CVE-2007-5442 | — | — | 0.7% | Oct 14, 2007 | CMS Made Simple 1.1.3.1 does not check the permissions assigned to users who attempt uploads, which allows remote authen... |
| CVE-2007-5447 | — | — | 4.6% | Oct 14, 2007 | ioncube_loader_win_5.2.dll in the ionCube Loader 6.5 extension for PHP 5.2.4 does not follow safe_mode and disable_funct... |
| CVE-2007-5444 | — | — | 1.2% | Oct 14, 2007 | CMS Made Simple 1.1.3.1 allows remote attackers to obtain the full path via a direct request for unspecified files. |
| CVE-2007-5445 | — | — | 2.5% | Oct 14, 2007 | Buffer overflow in the DB Software Laboratory VImpX (VImpAX1) ActiveX control in VImpX.ocx 4.7.3.0 allows remote attacke... |
| CVE-2007-5446 | — | — | 5.8% | Oct 14, 2007 | Absolute path traversal vulnerability in a certain ActiveX control in PBEmail7Ax.dll in PBEmail 7 ActiveX Edition allows... |
| CVE-2007-5448 | — | — | 2.0% | Oct 14, 2007 | Madwifi 0.9.3.2 and earlier allows remote attackers to cause a denial of service (panic) via a beacon frame with a large... |
| CVE-2007-5449 | — | — | 1.4% | Oct 14, 2007 | SQL injection vulnerability in searchresult.php in Softbiz Recipes Portal Script allows remote attackers to execute arbi... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now