2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-4714SQL injection vulnerability in error_view.php in Yvora 1.0 allows remote attackers to execute arbitrary SQL commands via...
CVE-2007-4715Multiple PHP remote file inclusion vulnerabilities in Weblogicnet allow remote attackers to execute arbitrary PHP code v...
CVE-2007-4716Multiple SQL injection vulnerabilities in PHD Help Desk before 1.31 allow remote attackers to execute arbitrary SQL comm...
CVE-2007-4717Multiple cross-site scripting (XSS) vulnerabilities in Claroline before 1.8.6 allow remote authenticated administrators ...
CVE-2007-4718Directory traversal vulnerability in inc/lib/language.lib.php in Claroline before 1.8.6 allows remote attackers to inclu...
CVE-2007-4719SQL injection vulnerability in read.php in 212cafeBoard 6.30 Beta allows remote attackers to execute arbitrary SQL comma...
CVE-2007-4720Unspecified vulnerability in the Shared Trace Service in Hitachi JP1/Cm2/Network Node Manager (NNM) 07-10 through 07-10-...
CVE-2007-4722Multiple stack-based buffer overflows in the Quantum Streaming Internet Explorer Player ActiveX control in qsp2ie0705100...
CVE-2007-4723Directory traversal vulnerability in Ragnarok Online Control Panel 4.3.4a, when the Apache HTTP Server is used, allows r...
CVE-2007-4721Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-6113. Reason: This candidate is a duplicate of...
CVE-2007-4724Cross-site request forgery (CSRF) vulnerability in cal2.jsp in the calendar examples application in Apache Tomcat 4.1.31...
CVE-2007-0322Multiple stack-based buffer overflows in the Intuit QuickBooks Online Edition ActiveX control before 10 allow remote att...
CVE-2007-3999Stack-based buffer overflow in the svcauth_gss_validate function in lib/rpc/svc_auth_gss.c in the RPCSEC_GSS RPC library...
CVE-2007-4000The kadm5_modify_policy_internal function in lib/kadm5/srv/svr_policy.c in the Kerberos administration daemon (kadmind) ...
CVE-2007-4476Buffer overflow in the safer_name_suffix function in GNU tar has unspecified attack vectors and impact, resulting in a "...
CVE-2007-3849Red Hat Enterprise Linux (RHEL) 5 ships the rpm for the Advanced Intrusion Detection Environment (AIDE) before 0.13.1 wi...
CVE-2007-4135The NFSv4 ID mapper (nfsidmap) before 0.17 does not properly handle return values from the getpwnam_r function when perf...
CVE-2007-4670Unspecified vulnerability in PHP before 5.2.4 has unknown impact and attack vectors, related to an "Improved fix for MOP...
CVE-2007-4654Unspecified vulnerability in SSHield 1.6.1 with OpenSSH 3.0.2p1 on Cisco WebNS 8.20.0.1 on Cisco Content Services Switch...
CVE-2007-4655Multiple directory traversal vulnerabilities in CGI RESCUE Shopping Basket Professional 7.51 and earlier allow remote at...
CVE-2007-4656backup-manager-upload in Backup Manager before 0.6.3 provides the FTP server hostname, username, and password as plainte...
CVE-2007-4657Multiple integer overflows in PHP 4 before 4.4.8, and PHP 5 before 5.2.4, allow remote attackers to obtain sensitive inf...
CVE-2007-4659The zend_alter_ini_entry function in PHP before 5.2.4 does not properly handle an interruption to the flow of execution ...
CVE-2007-4660Unspecified vulnerability in the chunk_split function in PHP before 5.2.4 has unknown impact and attack vectors, related...
CVE-2007-4661The chunk_split function in string.c in PHP 5.2.3 does not properly calculate the needed buffer size due to precision lo...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now