2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-5309 | — | — | 5.8% | Oct 9, 2007 | PHP remote file inclusion vulnerability in admin.wmtgallery.php in the webmaster-tips.net Flash Image Gallery (com_wmtga... |
| CVE-2007-5318 | — | — | 1.2% | Oct 9, 2007 | Unspecified vulnerability in preview.php in TYPOlight webCMS 2.4.6 allows remote attackers to download arbitrary files v... |
| CVE-2007-5311 | — | — | 3.1% | Oct 9, 2007 | Directory traversal vulnerability in backend/admin-functions.php in TorrentTrader Classic Edition 1.07 allows remote att... |
| CVE-2007-5312 | — | — | 2.3% | Oct 9, 2007 | Cross-site scripting (XSS) vulnerability in TorrentTrader Classic 1.07 allows remote attackers to inject arbitrary web s... |
| CVE-2007-5313 | — | — | 2.8% | Oct 9, 2007 | PHP remote file inclusion vulnerability in install/config.php in Picturesolution 2.1 and earlier allows remote attackers... |
| CVE-2007-5315 | — | — | 38.6% | Oct 9, 2007 | PHP remote file inclusion vulnerability in common.php in LiveAlbum 0.9.0, when register_globals is enabled, allows remot... |
| CVE-2007-5316 | — | — | 1.4% | Oct 9, 2007 | SQL injection vulnerability in browsecats.php in Softbiz Jobs and Recruitment Script allows remote attackers to execute ... |
| CVE-2007-5290 | — | — | 3.8% | Oct 9, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in MailBee WebMail Pro 3.4 and earlier; and possibly MailBee WebMail... |
| CVE-2007-5291 | — | — | 1.1% | Oct 9, 2007 | Cross-site scripting (XSS) vulnerability in Edit.asp in DB Manager 2.0 allows remote attackers to inject arbitrary web s... |
| CVE-2007-5292 | — | — | 1.0% | Oct 9, 2007 | Cross-site scripting (XSS) vulnerability in photos.cfm in Directory Image Gallery 1.1 allows remote attackers to inject ... |
| CVE-2007-5293 | — | — | 2.3% | Oct 9, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in IDMOS 1.0-beta (aka Phoenix) allow remote attackers to inject arb... |
| CVE-2007-5294 | — | — | 5.6% | Oct 9, 2007 | PHP remote file inclusion vulnerability in core/aural.php in IDMOS 1.0-beta (aka Phoenix) allows remote attackers to exe... |
| CVE-2007-5295 | — | — | 1.1% | Oct 9, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in (a) Wikepage Opus 13 2007.2 and (b) TipiWiki 2 allow... |
| CVE-2007-5296 | — | — | 1.1% | Oct 9, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in dblisttest.asp in dbList 8.1 allow remote attackers to inject arb... |
| CVE-2007-5297 | — | — | 1.2% | Oct 9, 2007 | Cross-site scripting (XSS) vulnerability in index.php in Minki 1.30 allows remote attackers to inject arbitrary web scri... |
| CVE-2007-5298 | — | — | 7.4% | Oct 9, 2007 | Multiple PHP remote file inclusion vulnerabilities in CMS Creamotion allow remote attackers to execute arbitrary PHP cod... |
| CVE-2007-5299 | — | — | 8.3% | Oct 9, 2007 | Multiple directory traversal vulnerabilities in SkaDate 5.0 and 6.0, and possibly later versions such as 6.482, allow re... |
| CVE-2007-5300 | — | — | 4.9% | Oct 9, 2007 | Off-by-one error in the do_login_loop function in libwzd-core/wzd_login.c in wzdftpd 0.8.0, 0.8.2, and possibly other ve... |
| CVE-2007-5302 | — | — | 2.9% | Oct 9, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in HP System Management Homepage (SMH) in HP-UX B.11.11, B.11.23, an... |
| CVE-2007-5301 | — | — | 10.2% | Oct 9, 2007 | Buffer overflow in the vorbis_stream_info function in input/vorbis/vorbis_engine.c (aka the vorbis input plugin) in Alsa... |
| CVE-2007-5305 | — | — | 9.3% | Oct 9, 2007 | Multiple PHP remote file inclusion vulnerabilities in ELSEIF CMS Beta 0.6 allow remote attackers to execute arbitrary PH... |
| CVE-2007-5303 | — | — | 1.0% | Oct 9, 2007 | Cross-site scripting (XSS) vulnerability in news_page.php in SnewsCMS Rus 2.1 allows remote attackers to inject arbitrar... |
| CVE-2007-5304 | — | — | 3.8% | Oct 9, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in ELSEIF CMS Beta 0.6 allow remote attackers to inject arbitrary we... |
| CVE-2007-5306 | — | — | 2.8% | Oct 9, 2007 | ELSEIF CMS Beta 0.6 allows remote attackers to obtain sensitive information (full path) via unspecified vectors to utili... |
| CVE-2007-5307 | — | — | 2.4% | Oct 9, 2007 | ELSEIF CMS Beta 0.6 does not properly unset variables when the input data includes a numeric parameter with a value matc... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now