2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-4714——SQL injection vulnerability in error_view.php in Yvora 1.0 allows remote attackers to execute arbitrary SQL commands via...
CVE-2007-4715——Multiple PHP remote file inclusion vulnerabilities in Weblogicnet allow remote attackers to execute arbitrary PHP code v...
CVE-2007-4716——Multiple SQL injection vulnerabilities in PHD Help Desk before 1.31 allow remote attackers to execute arbitrary SQL comm...
CVE-2007-4717——Multiple cross-site scripting (XSS) vulnerabilities in Claroline before 1.8.6 allow remote authenticated administrators ...
CVE-2007-4718——Directory traversal vulnerability in inc/lib/language.lib.php in Claroline before 1.8.6 allows remote attackers to inclu...
CVE-2007-4719——SQL injection vulnerability in read.php in 212cafeBoard 6.30 Beta allows remote attackers to execute arbitrary SQL comma...
CVE-2007-4720——Unspecified vulnerability in the Shared Trace Service in Hitachi JP1/Cm2/Network Node Manager (NNM) 07-10 through 07-10-...
CVE-2007-4722——Multiple stack-based buffer overflows in the Quantum Streaming Internet Explorer Player ActiveX control in qsp2ie0705100...
CVE-2007-4723——Directory traversal vulnerability in Ragnarok Online Control Panel 4.3.4a, when the Apache HTTP Server is used, allows r...
CVE-2007-4721——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-6113. Reason: This candidate is a duplicate of...
CVE-2007-4724——Cross-site request forgery (CSRF) vulnerability in cal2.jsp in the calendar examples application in Apache Tomcat 4.1.31...
CVE-2007-0322——Multiple stack-based buffer overflows in the Intuit QuickBooks Online Edition ActiveX control before 10 allow remote att...
CVE-2007-3999——Stack-based buffer overflow in the svcauth_gss_validate function in lib/rpc/svc_auth_gss.c in the RPCSEC_GSS RPC library...
CVE-2007-4000——The kadm5_modify_policy_internal function in lib/kadm5/srv/svr_policy.c in the Kerberos administration daemon (kadmind) ...
CVE-2007-4476——Buffer overflow in the safer_name_suffix function in GNU tar has unspecified attack vectors and impact, resulting in a "...
CVE-2007-3849——Red Hat Enterprise Linux (RHEL) 5 ships the rpm for the Advanced Intrusion Detection Environment (AIDE) before 0.13.1 wi...
CVE-2007-4135——The NFSv4 ID mapper (nfsidmap) before 0.17 does not properly handle return values from the getpwnam_r function when perf...
CVE-2007-4670——Unspecified vulnerability in PHP before 5.2.4 has unknown impact and attack vectors, related to an "Improved fix for MOP...
CVE-2007-4654——Unspecified vulnerability in SSHield 1.6.1 with OpenSSH 3.0.2p1 on Cisco WebNS 8.20.0.1 on Cisco Content Services Switch...
CVE-2007-4655——Multiple directory traversal vulnerabilities in CGI RESCUE Shopping Basket Professional 7.51 and earlier allow remote at...
CVE-2007-4656——backup-manager-upload in Backup Manager before 0.6.3 provides the FTP server hostname, username, and password as plainte...
CVE-2007-4657——Multiple integer overflows in PHP 4 before 4.4.8, and PHP 5 before 5.2.4, allow remote attackers to obtain sensitive inf...
CVE-2007-4659——The zend_alter_ini_entry function in PHP before 5.2.4 does not properly handle an interruption to the flow of execution ...
CVE-2007-4660——Unspecified vulnerability in the chunk_split function in PHP before 5.2.4 has unknown impact and attack vectors, related...
CVE-2007-4661——The chunk_split function in string.c in PHP 5.2.3 does not properly calculate the needed buffer size due to precision lo...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now