2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-5280 | — | — | 1.1% | Oct 9, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in messages.jsp in AppFuse before 2.0 Final allow remote attackers t... |
| CVE-2007-5288 | — | — | — | Oct 9, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-5283. Reason: This candidate is a duplicate of... |
| CVE-2007-5270 | — | — | 1.3% | Oct 8, 2007 | Unspecified vulnerability in the Boost module before 4.7.x-1.0, and 5.x before 5.x-1.0, for Drupal allows remote attacke... |
| CVE-2007-5271 | — | — | 28.7% | Oct 8, 2007 | Multiple PHP remote file inclusion vulnerabilities in Trionic Cite CMS 1.2 rev9 and earlier allow remote attackers to ex... |
| CVE-2007-5272 | — | — | 1.0% | Oct 8, 2007 | SQL injection vulnerability in kategori.asp in Furkan Tastan Blog allows remote attackers to execute arbitrary SQL comma... |
| CVE-2007-5273 | — | — | 2.7% | Oct 8, 2007 | Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 2 and earlier, JDK and JRE 5.0 Update 12 and earlier, SDK and... |
| CVE-2007-5274 | — | — | 2.7% | Oct 8, 2007 | Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 2 and earlier, JDK and JRE 5.0 Update 12 and earlier, SDK and... |
| CVE-2007-5275 | — | — | 6.2% | Oct 8, 2007 | The Adobe Macromedia Flash 9 plug-in allows remote attackers to cause a victim machine to establish TCP sessions with ar... |
| CVE-2007-5276 | — | — | 1.4% | Oct 8, 2007 | Opera 9 drops DNS pins based on failed connections to irrelevant TCP ports, which makes it easier for remote attackers t... |
| CVE-2007-5277 | — | — | 9.7% | Oct 8, 2007 | Microsoft Internet Explorer 6 drops DNS pins based on failed connections to irrelevant TCP ports, which makes it easier ... |
| CVE-2007-5278 | — | — | 2.0% | Oct 8, 2007 | Zomplog 3.8.1 and earlier stores potentially sensitive information under the web root with insufficient access control, ... |
| CVE-2007-4924 | — | — | 10.7% | Oct 8, 2007 | The Open Phone Abstraction Library (opal), as used by (1) Ekiga before 2.0.10 and (2) OpenH323 before 2.2.4, allows remo... |
| CVE-2007-5268 | — | — | 3.1% | Oct 8, 2007 | pngrtran.c in libpng before 1.0.29 and 1.2.x before 1.2.21 use (1) logical instead of bitwise operations and (2) incorre... |
| CVE-2007-5269 | — | — | 4.8% | Oct 8, 2007 | Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 allow remote attackers to cause a denial of servi... |
| CVE-2007-5262 | — | — | 3.5% | Oct 8, 2007 | Multiple format string vulnerabilities in Battlefront Dropteam 1.3.3 and earlier allow remote attackers to execute arbit... |
| CVE-2007-5263 | — | — | 4.2% | Oct 8, 2007 | Multiple buffer overflows in Battlefront Dropteam 1.3.3 and earlier allow remote attackers to execute arbitrary code via... |
| CVE-2007-5264 | — | — | 3.1% | Oct 8, 2007 | Battlefront Dropteam 1.3.3 and earlier sends the client's online account name and password to the game server, which all... |
| CVE-2007-5265 | — | — | 5.3% | Oct 8, 2007 | Multiple format string vulnerabilities in websrv.cpp in Dawn of Time 1.69s beta4 and earlier allow remote attackers to e... |
| CVE-2007-5266 | — | — | 3.4% | Oct 8, 2007 | Off-by-one error in ICC profile chunk handling in the png_set_iCCP function in pngset.c in libpng before 1.0.29 beta1 an... |
| CVE-2007-5267 | — | — | 2.0% | Oct 8, 2007 | Off-by-one error in ICC profile chunk handling in the png_set_iCCP function in pngset.c in libpng before 1.2.22 beta1 al... |
| CVE-2007-4851 | — | — | — | Oct 8, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-5137. Reason: This candidate is a duplicate of... |
| CVE-2007-5261 | — | — | 2.0% | Oct 6, 2007 | Multiple SQL injection vulnerabilities in MultiCart 1.0 allow remote attackers to execute arbitrary SQL commands via the... |
| CVE-2007-5253 | — | — | 8.9% | Oct 6, 2007 | c32web.exe in McMurtrey/Whitaker Cart32 before 6.4 allows remote attackers to read arbitrary files via the ImageName par... |
| CVE-2007-5243 | — | — | 40.1% | Oct 6, 2007 | Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0... |
| CVE-2007-5244 | — | — | 37.5% | Oct 6, 2007 | Stack-based buffer overflow in Borland InterBase LI 8.0.0.53 through 8.1.0.253 on Linux, and possibly unspecified versio... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now