2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-5423tiki-graph_formula.php in TikiWiki 1.9.8 allows remote attackers to execute arbitrary code via PHP sequences in the f ar...
CVE-2007-5424The disable_functions feature in PHP 4 and 5 allows attackers to bypass intended restrictions by using an alias, as demo...
CVE-2007-5425SQL injection vulnerability in admin/index.php in Interspire ActiveKB 1.5 allows remote attackers to execute arbitrary S...
CVE-2007-5426Multiple cross-site scripting (XSS) vulnerabilities in ActiveKB NX 2.5.4 allow remote attackers to inject arbitrary web ...
CVE-2007-5427Cross-site scripting (XSS) vulnerability in the com_search component in Joomla! 1.0.13 and earlier allows remote attacke...
CVE-2007-5428Cross-site scripting (XSS) vulnerability in UMI CMS allows remote attackers to inject arbitrary web script or HTML via t...
CVE-2007-5429Cross-site scripting (XSS) vulnerability in index.php in Nucleus 3.01 allows remote attackers to inject arbitrary web sc...
CVE-2007-5430Multiple SQL injection vulnerabilities in Stride 1.0 allow remote attackers to execute arbitrary SQL commands via (1) th...
CVE-2007-5431include/imageupload.js in the MyFTPUploader module in Stride 1.0 contains sensitive information including FTP login cred...
CVE-2007-5432Stride 1.0 has a default administrator username of "scott" with the password "running", which allows remote attackers to...
CVE-2007-5433Multiple cross-site scripting (XSS) vulnerabilities in index.cgi in Site-Up 2.64 and earlier allow remote attackers to i...
CVE-2007-5434Cross-site scripting (XSS) vulnerability in PRO-search 0.17.1 and earlier allows remote attackers to inject arbitrary we...
CVE-2007-4619Multiple integer overflows in Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1, as used in Winamp before 5.5 and ot...
CVE-2007-5421Rejected reason: Multiple stack-based buffer overflows in Cisco IOS 12.x and IOS XR allow attackers to execute arbitrary...
CVE-2007-5414Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0, when UTF-7 document content is rendered directly...
CVE-2007-5415Cross-site scripting (XSS) vulnerability in Mozilla Firefox 2.0, when UTF-7 document content is rendered directly in UTF...
CVE-2007-5416Drupal 5.2 and earlier does not properly unset variables when the input data includes a numeric parameter with a value m...
CVE-2007-5417Directory traversal vulnerability in index.php in boastMachine (aka bMachine) 2.8 allows remote attackers to read arbitr...
CVE-2007-5418Multiple PHP remote file inclusion vulnerabilities in CARE2X 2G 2.2 allow remote attackers to execute arbitrary PHP code...
CVE-2007-5419The 3Com 3CRWER100-75 router with 1.2.10ww software, when enabling an optional virtual server, configures this server to...
CVE-2007-5420The 3Com 3CRWER100-75 router with 1.2.10ww software, when remote management is disabled but a web server has been config...
CVE-2007-5422Unspecified vulnerability in "Solaris Auditing" in the Basic Security Module (BSM) in Sun Solaris 10, when configured fo...
CVE-2007-3675Multiple format string vulnerabilities in the kavwebscan.CKAVWebScan ActiveX control (kavwebscan.dll) in Kaspersky Onlin...
CVE-2007-5412Multiple PHP remote file inclusion vulnerabilities in the Quoc-Huy MP3 Allopass (com_mp3_allopass) 1.0 component for Joo...
CVE-2007-5407Multiple PHP remote file inclusion vulnerabilities in the JContentSubscription (com_jcs) 1.5.8 component for Joomla! all...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now