2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-5168 | — | — | 1.3% | Oct 1, 2007 | Multiple PHP remote file inclusion vulnerabilities in ClanLite 1.23.01.2005 allow remote attackers to execute arbitrary ... |
| CVE-2007-5160 | — | — | 1.2% | Oct 1, 2007 | Multiple PHP remote file inclusion vulnerabilities in Thierry Leriche Restaurant Management System (ReMaSys) 0.5 allow r... |
| CVE-2007-5142 | — | — | 1.2% | Sep 28, 2007 | Cross-site scripting (XSS) vulnerability in buscar.asp in Solidweb Novus 1.0 allows remote attackers to inject arbitrary... |
| CVE-2007-5141 | — | — | 1.1% | Sep 28, 2007 | SQL injection vulnerability in search.php in SiteX CMS 0.7.3 Beta allows remote attackers to execute arbitrary SQL comma... |
| CVE-2007-5136 | — | — | 1.0% | Sep 28, 2007 | Cross-site scripting (XSS) vulnerability in DFD Cart 1.1.4 and earlier allows remote attackers to inject arbitrary web s... |
| CVE-2007-5137 | — | — | 4.9% | Sep 28, 2007 | Buffer overflow in the ReadImage function in generic/tkImgGIF.c in Tcl (Tcl/Tk) 8.4.13 through 8.4.15 allows remote atta... |
| CVE-2007-5138 | — | — | 2.1% | Sep 28, 2007 | PHP remote file inclusion vulnerability in forum/forum.php in lustig.cms BETA 2.5 allows remote attackers to execute arb... |
| CVE-2007-5139 | — | — | 2.1% | Sep 28, 2007 | PHP remote file inclusion vulnerability in admin/include/header.php in chupix 0.2.3, when register_globals is enabled, a... |
| CVE-2007-5140 | — | — | 2.4% | Sep 28, 2007 | PHP remote file inclusion vulnerability in includes/archive/archive_topic.php in IntegraMOD Nederland 1.4.2 allows remot... |
| CVE-2007-4880 | — | — | 75.9% | Sep 28, 2007 | Buffer overflow in the Client Acceptor Daemon (CAD), dsmcad.exe, in certain IBM Tivoli Storage Manager (TSM) clients 5.1... |
| CVE-2007-4671 | — | — | 2.6% | Sep 27, 2007 | Unspecified vulnerability in Safari in Apple iPhone 1.1.1, and Safari 3 before Beta Update 3.0.4 on Windows and Mac OS X... |
| CVE-2007-3761 | — | — | 1.9% | Sep 27, 2007 | Cross-site scripting (XSS) vulnerability in Safari in Apple iPhone 1.1.1 allows remote attackers to inject arbitrary web... |
| CVE-2007-3759 | — | — | 1.7% | Sep 27, 2007 | Safari in Apple iPhone 1.1.1, when requested to disable Javascript, does not disable it until Safari is restarted, which... |
| CVE-2007-3760 | — | — | 3.1% | Sep 27, 2007 | Cross-site scripting (XSS) vulnerability in Safari in Apple iPhone 1.1.1, and Safari 3 before Beta Update 3.0.4 on Windo... |
| CVE-2007-3758 | — | — | 3.1% | Sep 27, 2007 | Safari in Apple iPhone 1.1.1, and Safari 3 before Beta Update 3.0.4 on Windows and in Mac OS X 10.4 through 10.4.10, all... |
| CVE-2007-3754 | — | — | 1.8% | Sep 27, 2007 | Mail in Apple iPhone 1.1.1, when using SSL, does not warn the user when the mail server changes or is not trusted, which... |
| CVE-2007-3753 | — | — | 2.8% | Sep 27, 2007 | Apple iPhone 1.1.1, with Bluetooth enabled, allows physically proximate attackers to cause a denial of service (applicat... |
| CVE-2007-3756 | — | — | 2.4% | Sep 27, 2007 | Safari in Apple iPhone 1.1.1, and Safari 3 before Beta Update 3.0.4 on Windows and Mac OS X 10.4 through 10.4.10, allows... |
| CVE-2007-3757 | — | — | 2.0% | Sep 27, 2007 | Safari in Apple iPhone 1.1.1 allows remote user-assisted attackers to trick the iPhone user into making calls to arbitra... |
| CVE-2007-3755 | — | — | 2.0% | Sep 27, 2007 | Mail in Apple iPhone 1.1.1 allows remote user-assisted attackers to force the iPhone user to make calls to arbitrary tel... |
| CVE-2007-5135 | — | — | 16.1% | Sep 27, 2007 | Off-by-one error in the SSL_get_shared_ciphers function in OpenSSL 0.9.7 up to 0.9.7l, and 0.9.8 up to 0.9.8f, might all... |
| CVE-2007-5125 | — | — | — | Sep 27, 2007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-1171. Reason: This candidate is a duplicate of... |
| CVE-2007-4873 | — | — | 1.5% | Sep 27, 2007 | SimpNews 2.41.03 stores sensitive information under the web root with insufficient access control, which allows remote a... |
| CVE-2007-4872 | — | — | 1.8% | Sep 27, 2007 | SimpNews 2.41.03 allows remote attackers to obtain sensitive information via (1) an invalid lang parameter to admin/inde... |
| CVE-2007-5126 | — | — | 1.5% | Sep 27, 2007 | Unspecified vulnerability in the client in Symantec Veritas Backup Exec for Windows Servers 11d has unknown impact and r... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now