2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-5218 | — | — | 1.7% | Oct 5, 2007 | Cross-site scripting (XSS) vulnerability in index.php in Don Barnes DRBGuestbook 1.1.13 allows remote attackers to injec... |
| CVE-2007-5219 | — | — | 15.7% | Oct 5, 2007 | Directory traversal vulnerability in the CLAVSetting.CLSetting.1 ActiveX control in CLAVSetting.DLL 1.00.1829 in the CLA... |
| CVE-2007-5220 | — | — | 1.2% | Oct 5, 2007 | SQL injection vulnerability in catalog.asp in ASP Product Catalog allows remote attackers to execute arbitrary SQL comma... |
| CVE-2007-5221 | — | — | 2.7% | Oct 5, 2007 | PHP remote file inclusion vulnerability in mail/childwindow.inc.php in Poppawid 2.7 allows remote attackers to execute a... |
| CVE-2007-5222 | — | — | 1.7% | Oct 5, 2007 | SQL injection vulnerability in index.php in MAXdev MDPro (MD-Pro) 1.0.76 allows remote attackers to execute arbitrary SQ... |
| CVE-2007-5223 | — | — | 1.4% | Oct 5, 2007 | Multiple unspecified vulnerabilities in AlstraSoft Affiliate Network Pro allow remote attackers to include local files a... |
| CVE-2007-5225 | — | — | 1.0% | Oct 5, 2007 | Integer signedness error in FIFO filesystems (named pipes) on Sun Solaris 8 through 10 allows local users to read the co... |
| CVE-2007-4133 | — | — | 0.4% | Oct 4, 2007 | The (1) hugetlb_vmtruncate_list and (2) hugetlb_vmtruncate functions in fs/hugetlbfs/inode.c in the Linux kernel before ... |
| CVE-2007-4673 | — | — | 2.4% | Oct 4, 2007 | Argument injection vulnerability in Apple QuickTime 7.2 for Windows XP SP2 and Vista allows remote attackers to execute ... |
| CVE-2007-5209 | — | — | 4.0% | Oct 4, 2007 | Stack-based buffer overflow in DriveLock.exe in CenterTools DriveLock 5.0 allows remote attackers to execute arbitrary c... |
| CVE-2007-5210 | — | — | 0.9% | Oct 4, 2007 | Arbor Networks Peakflow SP before 3.5.1 patch 14, and 3.6.x before 3.6.1 patch 5, allows remote authenticated users to b... |
| CVE-2007-5211 | — | — | 1.0% | Oct 4, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in Arbor Networks Peakflow SP 3.5.1 before patch 14, and 3.6.1 befor... |
| CVE-2007-5212 | — | — | 1.9% | Oct 4, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in the AXIS 2100 Network Camera 2.02 with firmware before 2.43 allow... |
| CVE-2007-5213 | — | — | 1.7% | Oct 4, 2007 | Multiple cross-site request forgery (CSRF) vulnerabilities in the AXIS 2100 Network Camera 2.02 with firmware 2.43 and e... |
| CVE-2007-5214 | — | — | 2.4% | Oct 4, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in the AXIS 2100 Network Camera 2.02 with firmware 2.43 and earlier ... |
| CVE-2007-5215 | — | — | 1.3% | Oct 4, 2007 | Multiple PHP remote file inclusion vulnerabilities in Jacob Hinkle GodSend 0.6 allow remote attackers to execute arbitra... |
| CVE-2007-5216 | — | — | 1.3% | Oct 4, 2007 | Multiple PHP remote file inclusion vulnerabilities in eArk (e-Ark) 1.0 allow remote attackers to execute arbitrary PHP c... |
| CVE-2007-5207 | — | — | 0.4% | Oct 4, 2007 | guilt 0.27 allows local users to overwrite arbitrary files via a symlink attack on a guilt.log.[PID] temporary file. |
| CVE-2007-5194 | — | — | 0.3% | Oct 4, 2007 | The Chroot server in rMake 1.0.11 creates a /dev/zero device file with read/write permissions for the rMake user and the... |
| CVE-2007-5198 | — | — | 8.0% | Oct 4, 2007 | Buffer overflow in the redir function in check_http.c in Nagios Plugins before 1.4.10, when running with the -f (follow)... |
| CVE-2007-5201 | — | — | 0.4% | Oct 4, 2007 | The FTP backend for Duplicity before 0.4.9 sends the password as a command line argument when calling ncftp, which might... |
| CVE-2007-5193 | — | — | 1.6% | Oct 4, 2007 | The default configuration for twiki 4.1.2 on Debian GNU/Linux, and possibly other operating systems, specifies the work ... |
| CVE-2007-5191 | — | — | 0.4% | Oct 4, 2007 | mount and umount in util-linux and loop-aes-utils call the setuid and setgid functions in the wrong order and do not che... |
| CVE-2007-5180 | — | — | 1.2% | Oct 3, 2007 | Multiple SQL injection vulnerabilities in Ohesa Emlak Portali allow remote attackers to execute arbitrary SQL commands v... |
| CVE-2007-5189 | — | — | 1.1% | Oct 3, 2007 | Multiple SQL injection vulnerabilities in mes_add.php in x-script GuestBook 1.3a, when magic_quotes_gpc is disabled, all... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now