2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-4945Multiple cross-site scripting (XSS) vulnerabilities in LetterGrade allow remote attackers to inject arbitrary web script...
CVE-2007-4946LetterGrade allows remote attackers to obtain sensitive information (installation path or account existence) via unspeci...
CVE-2007-4928The AXIS 207W camera stores a WEP or WPA key in cleartext in the configuration file, which might allow local users to ob...
CVE-2007-4935Multiple PHP remote file inclusion vulnerabilities in phpFFL 1.24 allow remote attackers to execute arbitrary PHP code v...
CVE-2007-4927axis-cgi/buffer/command.cgi on the AXIS 207W camera allows remote authenticated users to cause a denial of service (rebo...
CVE-2007-4925The ewirePC_Decrypt function in ewirepcfunctions.php in eWire Payment Client (ePC) 1.60 and 1.70 allows remote attackers...
CVE-2007-4926The AXIS 207W camera uses a base64-encoded cleartext username and password for authentication, which allows remote attac...
CVE-2007-4929Multiple cross-site scripting (XSS) vulnerabilities in the AXIS 207W camera allow remote attackers to inject arbitrary w...
CVE-2007-4930Multiple cross-site request forgery (CSRF) vulnerabilities in the AXIS 207W camera allow remote attackers to perform cer...
CVE-2007-4931HP System Management Homepage (SMH) for Windows, when used in conjunction with HP Version Control Agent or Version Contr...
CVE-2007-4932admin.php in Shop-Script FREE 2.0 and earlier sends a redirect to the web browser but does not exit when administrative ...
CVE-2007-4933Direct static code injection vulnerability in includes/admin/sub/conf_appearence.php in Shop-Script FREE 2.0 and earlier...
CVE-2007-4934Multiple PHP remote file inclusion vulnerabilities in phpFFL 1.24 allow remote attackers to execute arbitrary PHP code v...
CVE-2007-3379Unspecified vulnerability in the kernel in Red Hat Enterprise Linux (RHEL) 4 on the x86_64 platform allows local users t...
CVE-2007-3731The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid LDT segment selector in %cs (the xcs field) durin...
CVE-2007-3654The display driver allocattr functions in NetBSD 3.0 through 4.0_BETA2, and NetBSD-current before 20070728, allow local ...
CVE-2007-4911JSMP3OGGWt.dll in JetCast Server 2.0.0.4308 allows remote attackers to cause a denial of service (daemon crash) via a lo...
CVE-2007-4910Unspecified vulnerability in netInvoicing before 2.7.3 has unknown impact and attack vectors, related to "security check...
CVE-2007-4909Interpretation conflict in WinSCP before 4.0.4 allows remote attackers to perform arbitrary file transfers with a remote...
CVE-2007-4912Cross-site scripting (XSS) vulnerability in ips_kernel/class_ajax.php in Invision Power Board (IPB or IP.Board) 2.3.1 up...
CVE-2007-4913ips_kernel/class_upload.php in Invision Power Board (IPB or IP.Board) 2.3.1 up to 20070912 allows remote attackers to up...
CVE-2007-4914Unspecified vulnerability in the subscriptions manager in Invision Power Board (IPB or IP.Board) 2.3.1 before 20070912 a...
CVE-2007-4915The Intersil isl3893 extensions for Boa 0.93.15, as used on the FreeLan RO80211G-AP and other devices, do not prevent st...
CVE-2007-4916Heap-based buffer overflow in the FileFind::FindFile method in (1) MFC42.dll, (2) MFC42u.dll, (3) MFC71.dll, and (4) MFC...
CVE-2007-4917Cross-site scripting (XSS) vulnerability in tracking.php in PHP-Stats 0.1.9.2 allows remote attackers to inject arbitrar...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now