2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-3740The CIFS filesystem in the Linux kernel before 2.6.22, when Unix extension support is enabled, does not honor the umask ...
CVE-2007-4891A certain ActiveX control in PDWizard.ocx 6.0.0.9782 and earlier in Microsoft Visual Studio 6.0 exposes dangerous (1) St...
CVE-2007-4889The MySQL extension in PHP 5.2.4 and earlier allows remote attackers to bypass safe_mode and open_basedir restrictions v...
CVE-2007-4890Absolute directory traversal vulnerability in a certain ActiveX control in the VB To VSI Support Library (VBTOVSI.DLL) 1...
CVE-2007-1688Buffer overflow in the PhPInfo ActiveX control in PhPCtrl.dll in Callisto PhotoParade Player allows remote attackers to ...
CVE-2007-4749The cmdjob utility in Autodesk Backburner 3.0.2 allows remote attackers to execute arbitrary commands on render servers ...
CVE-2007-4881SQL injection vulnerability in profile/myprofile.php in psi-labs.com social networking script (psisns), probably 1.0, al...
CVE-2007-4882Multiple cross-site scripting (XSS) vulnerabilities in TechExcel CustomerWise (formerly TechExcel CRM) allow remote atta...
CVE-2007-4883Cross-site scripting (XSS) vulnerability in the BotQuery extension in MediaWiki 1.7.x and earlier before SVN 20070910 al...
CVE-2007-4884Media Player Classic (MPC) allows user-assisted remote attackers to cause a denial of service (application crash) via a ...
CVE-2007-4885Avnex AV MP3 Player allows user-assisted remote attackers to cause a denial of service (application crash) via a malform...
CVE-2007-4886Incomplete blacklist vulnerability in index.php in AuraCMS 1.x and probably 2.x allows remote attackers to execute arbit...
CVE-2007-4887The dl function in PHP 5.2.4 and earlier allows context-dependent attackers to cause a denial of service (application cr...
CVE-2007-4888The "You are not allowed..." error handler in XWiki 1.0 B1 and 1.0 B2 associates the doc variable with the entire docume...
CVE-2007-4879Mozilla Firefox before Firefox 2.0.0.13, and SeaMonkey before 1.1.9, can automatically install TLS client certificates w...
CVE-2007-4840PHP 5.2.4 and earlier allows context-dependent attackers to cause a denial of service (application crash) via (1) a long...
CVE-2007-4849JFFS2, as used on One Laptop Per Child (OLPC) build 542 and possibly other Linux systems, when POSIX ACL support is enab...
CVE-2007-4841Mozilla Firefox before 2.0.0.8, Thunderbird before 2.0.0.8, and SeaMonkey before 1.1.5 allows remote attackers to execut...
CVE-2007-4842Directory traversal vulnerability in Enriva Development Magellan Explorer 3.32 build 2305 and earlier allows remote FTP ...
CVE-2007-4843Directory traversal vulnerability in X-Diesel Unreal Commander 0.92 build 565 and 573 allows remote FTP servers to creat...
CVE-2007-4844X-Diesel Unreal Commander 0.92 build 565 and 573 does not properly react to an FTP server's behavior after sending a "CW...
CVE-2007-4845Multiple SQL injection vulnerabilities in UPLOAD/index.php in RW::Download 2.0.3 lite allow remote attackers to execute ...
CVE-2007-4846SQL injection vulnerability in start.php in Webace-Linkscript (wls) 1.3 Special Edition (SE) allows remote attackers to ...
CVE-2007-4847Google Picasa allows remote attackers to read image files stored by Picasa via unspecified vectors involving a picasa://...
CVE-2007-4848Microsoft Internet Explorer 4.0 through 7 allows remote attackers to determine the existence of local files that have as...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now