2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-3740——The CIFS filesystem in the Linux kernel before 2.6.22, when Unix extension support is enabled, does not honor the umask ...
CVE-2007-4891——A certain ActiveX control in PDWizard.ocx 6.0.0.9782 and earlier in Microsoft Visual Studio 6.0 exposes dangerous (1) St...
CVE-2007-4889——The MySQL extension in PHP 5.2.4 and earlier allows remote attackers to bypass safe_mode and open_basedir restrictions v...
CVE-2007-4890——Absolute directory traversal vulnerability in a certain ActiveX control in the VB To VSI Support Library (VBTOVSI.DLL) 1...
CVE-2007-1688——Buffer overflow in the PhPInfo ActiveX control in PhPCtrl.dll in Callisto PhotoParade Player allows remote attackers to ...
CVE-2007-4749——The cmdjob utility in Autodesk Backburner 3.0.2 allows remote attackers to execute arbitrary commands on render servers ...
CVE-2007-4881——SQL injection vulnerability in profile/myprofile.php in psi-labs.com social networking script (psisns), probably 1.0, al...
CVE-2007-4882——Multiple cross-site scripting (XSS) vulnerabilities in TechExcel CustomerWise (formerly TechExcel CRM) allow remote atta...
CVE-2007-4883——Cross-site scripting (XSS) vulnerability in the BotQuery extension in MediaWiki 1.7.x and earlier before SVN 20070910 al...
CVE-2007-4884——Media Player Classic (MPC) allows user-assisted remote attackers to cause a denial of service (application crash) via a ...
CVE-2007-4885——Avnex AV MP3 Player allows user-assisted remote attackers to cause a denial of service (application crash) via a malform...
CVE-2007-4886——Incomplete blacklist vulnerability in index.php in AuraCMS 1.x and probably 2.x allows remote attackers to execute arbit...
CVE-2007-4887——The dl function in PHP 5.2.4 and earlier allows context-dependent attackers to cause a denial of service (application cr...
CVE-2007-4888——The "You are not allowed..." error handler in XWiki 1.0 B1 and 1.0 B2 associates the doc variable with the entire docume...
CVE-2007-4879——Mozilla Firefox before Firefox 2.0.0.13, and SeaMonkey before 1.1.9, can automatically install TLS client certificates w...
CVE-2007-4840——PHP 5.2.4 and earlier allows context-dependent attackers to cause a denial of service (application crash) via (1) a long...
CVE-2007-4849——JFFS2, as used on One Laptop Per Child (OLPC) build 542 and possibly other Linux systems, when POSIX ACL support is enab...
CVE-2007-4841——Mozilla Firefox before 2.0.0.8, Thunderbird before 2.0.0.8, and SeaMonkey before 1.1.5 allows remote attackers to execut...
CVE-2007-4842——Directory traversal vulnerability in Enriva Development Magellan Explorer 3.32 build 2305 and earlier allows remote FTP ...
CVE-2007-4843——Directory traversal vulnerability in X-Diesel Unreal Commander 0.92 build 565 and 573 allows remote FTP servers to creat...
CVE-2007-4844——X-Diesel Unreal Commander 0.92 build 565 and 573 does not properly react to an FTP server's behavior after sending a "CW...
CVE-2007-4845——Multiple SQL injection vulnerabilities in UPLOAD/index.php in RW::Download 2.0.3 lite allow remote attackers to execute ...
CVE-2007-4846——SQL injection vulnerability in start.php in Webace-Linkscript (wls) 1.3 Special Edition (SE) allows remote attackers to ...
CVE-2007-4847——Google Picasa allows remote attackers to read image files stored by Picasa via unspecified vectors involving a picasa://...
CVE-2007-4848——Microsoft Internet Explorer 4.0 through 7 allows remote attackers to determine the existence of local files that have as...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now