2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-5423 | — | — | 76.7% | Oct 12, 2007 | tiki-graph_formula.php in TikiWiki 1.9.8 allows remote attackers to execute arbitrary code via PHP sequences in the f ar... |
| CVE-2007-5424 | — | — | 1.7% | Oct 12, 2007 | The disable_functions feature in PHP 4 and 5 allows attackers to bypass intended restrictions by using an alias, as demo... |
| CVE-2007-5425 | — | — | 1.1% | Oct 12, 2007 | SQL injection vulnerability in admin/index.php in Interspire ActiveKB 1.5 allows remote attackers to execute arbitrary S... |
| CVE-2007-5426 | — | — | 1.8% | Oct 12, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in ActiveKB NX 2.5.4 allow remote attackers to inject arbitrary web ... |
| CVE-2007-5427 | — | — | 1.9% | Oct 12, 2007 | Cross-site scripting (XSS) vulnerability in the com_search component in Joomla! 1.0.13 and earlier allows remote attacke... |
| CVE-2007-5428 | — | — | 1.5% | Oct 12, 2007 | Cross-site scripting (XSS) vulnerability in UMI CMS allows remote attackers to inject arbitrary web script or HTML via t... |
| CVE-2007-5429 | — | — | 1.7% | Oct 12, 2007 | Cross-site scripting (XSS) vulnerability in index.php in Nucleus 3.01 allows remote attackers to inject arbitrary web sc... |
| CVE-2007-5430 | — | — | 1.9% | Oct 12, 2007 | Multiple SQL injection vulnerabilities in Stride 1.0 allow remote attackers to execute arbitrary SQL commands via (1) th... |
| CVE-2007-5431 | — | — | 1.6% | Oct 12, 2007 | include/imageupload.js in the MyFTPUploader module in Stride 1.0 contains sensitive information including FTP login cred... |
| CVE-2007-5432 | — | — | 1.4% | Oct 12, 2007 | Stride 1.0 has a default administrator username of "scott" with the password "running", which allows remote attackers to... |
| CVE-2007-5433 | — | — | 1.3% | Oct 12, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in index.cgi in Site-Up 2.64 and earlier allow remote attackers to i... |
| CVE-2007-5434 | — | — | 1.1% | Oct 12, 2007 | Cross-site scripting (XSS) vulnerability in PRO-search 0.17.1 and earlier allows remote attackers to inject arbitrary we... |
| CVE-2007-4619 | — | — | 6.7% | Oct 12, 2007 | Multiple integer overflows in Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1, as used in Winamp before 5.5 and ot... |
| CVE-2007-5421 | — | — | — | Oct 12, 2007 | Rejected reason: Multiple stack-based buffer overflows in Cisco IOS 12.x and IOS XR allow attackers to execute arbitrary... |
| CVE-2007-5414 | — | — | 0.9% | Oct 12, 2007 | Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0, when UTF-7 document content is rendered directly... |
| CVE-2007-5415 | — | — | 0.7% | Oct 12, 2007 | Cross-site scripting (XSS) vulnerability in Mozilla Firefox 2.0, when UTF-7 document content is rendered directly in UTF... |
| CVE-2007-5416 | — | — | 4.4% | Oct 12, 2007 | Drupal 5.2 and earlier does not properly unset variables when the input data includes a numeric parameter with a value m... |
| CVE-2007-5417 | — | — | 3.4% | Oct 12, 2007 | Directory traversal vulnerability in index.php in boastMachine (aka bMachine) 2.8 allows remote attackers to read arbitr... |
| CVE-2007-5418 | — | — | 2.7% | Oct 12, 2007 | Multiple PHP remote file inclusion vulnerabilities in CARE2X 2G 2.2 allow remote attackers to execute arbitrary PHP code... |
| CVE-2007-5419 | — | — | 2.2% | Oct 12, 2007 | The 3Com 3CRWER100-75 router with 1.2.10ww software, when enabling an optional virtual server, configures this server to... |
| CVE-2007-5420 | — | — | 1.9% | Oct 12, 2007 | The 3Com 3CRWER100-75 router with 1.2.10ww software, when remote management is disabled but a web server has been config... |
| CVE-2007-5422 | — | — | 0.4% | Oct 12, 2007 | Unspecified vulnerability in "Solaris Auditing" in the Basic Security Module (BSM) in Sun Solaris 10, when configured fo... |
| CVE-2007-3675 | — | — | 4.8% | Oct 12, 2007 | Multiple format string vulnerabilities in the kavwebscan.CKAVWebScan ActiveX control (kavwebscan.dll) in Kaspersky Onlin... |
| CVE-2007-5412 | — | — | 37.5% | Oct 12, 2007 | Multiple PHP remote file inclusion vulnerabilities in the Quoc-Huy MP3 Allopass (com_mp3_allopass) 1.0 component for Joo... |
| CVE-2007-5407 | — | — | 40.2% | Oct 12, 2007 | Multiple PHP remote file inclusion vulnerabilities in the JContentSubscription (com_jcs) 1.5.8 component for Joomla! all... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now