2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-5227 | — | — | 1.1% | Oct 5, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in messaging/course/composeMessage.jsp in BlackBoard Learning System... |
| CVE-2007-5234 | — | — | 42.3% | Oct 5, 2007 | PHP remote file inclusion vulnerability in upload/common/footer.php in Ossigeno CMS 2.2 alpha3 allows remote attackers t... |
| CVE-2007-5229 | — | — | 4.9% | Oct 5, 2007 | Cross-site request forgery (CSRF) vulnerability in the FeedBurner FeedSmith 2.2 plugin for WordPress allows remote attac... |
| CVE-2007-5230 | — | — | 4.7% | Oct 5, 2007 | admin/upload_files.php in Zomplog 3.8.1 and earlier does not check for administrative credentials, which allows remote a... |
| CVE-2007-5231 | — | — | 1.9% | Oct 5, 2007 | Unrestricted file upload vulnerability in admin/upload_files.php in Zomplog 3.8.1 and earlier allows remote authenticate... |
| CVE-2007-5232 | — | — | 3.4% | Oct 5, 2007 | Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 2 and earlier, JDK and JRE 5.0 Update 12 and earlier, SDK and... |
| CVE-2007-3918 | — | — | 1.3% | Oct 5, 2007 | Cross-site scripting (XSS) vulnerability in account/verify.php in GForge 4.6b2 allows remote attackers to inject arbitra... |
| CVE-2007-0447 | — | — | 6.0% | Oct 5, 2007 | Heap-based buffer overflow in the Decomposer component in multiple Symantec products allows remote attackers to execute ... |
| CVE-2007-4989 | — | — | — | Oct 5, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-4568. Reason: This candidate is a reservation ... |
| CVE-2007-4990 | — | — | 10.7% | Oct 5, 2007 | The swap_char2b function in X.Org X Font Server (xfs) before 1.0.5 allows context-dependent attackers to execute arbitra... |
| CVE-2007-5226 | — | — | 1.7% | Oct 5, 2007 | irc_server.c in dircproxy 1.2.0 and earlier allows remote attackers to cause a denial of service (segmentation fault) vi... |
| CVE-2007-3699 | — | — | 3.9% | Oct 5, 2007 | The Decomposer component in multiple Symantec products allows remote attackers to cause a denial of service (infinite lo... |
| CVE-2007-4568 | — | — | 4.0% | Oct 5, 2007 | Integer overflow in the build_range function in X.Org X Font Server (xfs) before 1.0.5 allows context-dependent attacker... |
| CVE-2007-5078 | — | — | 1.2% | Oct 5, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in eGov Manager allow remote attackers to inject arbitrary web scrip... |
| CVE-2007-5224 | — | — | 1.6% | Oct 5, 2007 | inc/exif.inc.php in Original Photo Gallery 0.11.2 and earlier allows remote attackers to execute arbitrary programs via ... |
| CVE-2007-5217 | — | — | 30.0% | Oct 5, 2007 | Stack-based buffer overflow in the ADM4 ActiveX control in adm4.dll in Altnet Download Manager 4.0.0.6, as used in (1) K... |
| CVE-2007-5218 | — | — | 1.7% | Oct 5, 2007 | Cross-site scripting (XSS) vulnerability in index.php in Don Barnes DRBGuestbook 1.1.13 allows remote attackers to injec... |
| CVE-2007-5219 | — | — | 15.7% | Oct 5, 2007 | Directory traversal vulnerability in the CLAVSetting.CLSetting.1 ActiveX control in CLAVSetting.DLL 1.00.1829 in the CLA... |
| CVE-2007-5220 | — | — | 1.2% | Oct 5, 2007 | SQL injection vulnerability in catalog.asp in ASP Product Catalog allows remote attackers to execute arbitrary SQL comma... |
| CVE-2007-5221 | — | — | 2.7% | Oct 5, 2007 | PHP remote file inclusion vulnerability in mail/childwindow.inc.php in Poppawid 2.7 allows remote attackers to execute a... |
| CVE-2007-5222 | — | — | 1.7% | Oct 5, 2007 | SQL injection vulnerability in index.php in MAXdev MDPro (MD-Pro) 1.0.76 allows remote attackers to execute arbitrary SQ... |
| CVE-2007-5223 | — | — | 1.4% | Oct 5, 2007 | Multiple unspecified vulnerabilities in AlstraSoft Affiliate Network Pro allow remote attackers to include local files a... |
| CVE-2007-5225 | — | — | 1.0% | Oct 5, 2007 | Integer signedness error in FIFO filesystems (named pipes) on Sun Solaris 8 through 10 allows local users to read the co... |
| CVE-2007-4133 | — | — | 0.4% | Oct 4, 2007 | The (1) hugetlb_vmtruncate_list and (2) hugetlb_vmtruncate functions in fs/hugetlbfs/inode.c in the Linux kernel before ... |
| CVE-2007-4673 | — | — | 2.4% | Oct 4, 2007 | Argument injection vulnerability in Apple QuickTime 7.2 for Windows XP SP2 and Vista allows remote attackers to execute ... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now