2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-4662Buffer overflow in the php_openssl_make_REQ function in PHP before 5.2.4 has unknown impact and attack vectors.
CVE-2007-4663Directory traversal vulnerability in PHP before 5.2.4 allows attackers to bypass open_basedir restrictions via unspecifi...
CVE-2007-4664Unspecified vulnerability in the (1) attach database and (2) create database functionality in Firebird before 2.0.2, whe...
CVE-2007-4665Unspecified vulnerability in the server in Firebird before 2.0.2 allows remote attackers to cause a denial of service (d...
CVE-2007-4666Unspecified vulnerability in the server in Firebird before 2.0.2, when a Superserver/TCP/IP environment is configured, a...
CVE-2007-4667Unspecified vulnerability in the Services API in Firebird before 2.0.2 allows remote attackers to cause a denial of serv...
CVE-2007-4668Unspecified vulnerability in the server in Firebird before 2.0.2 allows remote attackers to determine the existence of a...
CVE-2007-4658The money_format function in PHP 5 before 5.2.4, and PHP 4 before 4.4.8, permits multiple (1) %i and (2) %n tokens, whic...
CVE-2007-4669The Services API in Firebird before 2.0.2 allows remote authenticated users without SYSDBA privileges to read the server...
CVE-2007-4653SQL injection vulnerability in links.php in the Links MOD 1.2.2 and earlier for phpBB 2.0.22 and earlier allows remote a...
CVE-2007-4652The session extension in PHP before 5.2.4 might allow local users to bypass open_basedir restrictions via a session file...
CVE-2007-3997The (1) MySQL and (2) MySQLi extensions in PHP 4 before 4.4.8, and PHP 5 before 5.2.4, allow remote attackers to bypass ...
CVE-2007-3996Multiple integer overflows in libgd in PHP before 5.2.4 allow remote attackers to cause a denial of service (application...
CVE-2007-3998The wordwrap function in PHP 4 before 4.4.8, and PHP 5 before 5.2.4, does not properly use the breakcharlen variable, wh...
CVE-2007-4650Multiple unspecified vulnerabilities in Gallery before 2.2.3 allow attackers to (1) rename items, (2) read and modify it...
CVE-2007-4632Cisco IOS 12.2E, 12.2F, and 12.2S places a "no login" line into the VTY configuration when an administrator makes certai...
CVE-2007-4633Multiple cross-site scripting (XSS) vulnerabilities in Cisco CallManager and Unified Communications Manager (CUCM) befor...
CVE-2007-4634Multiple SQL injection vulnerabilities in Cisco CallManager and Unified Communications Manager (CUCM) before 3.3(5)sr2b,...
CVE-2007-4635Yahoo! Messenger 8.1.0.209 and 8.1.0.402 allows remote attackers to cause a denial of service (application crash) via ce...
CVE-2007-4636Multiple PHP remote file inclusion vulnerabilities in phpBG 0.9.1 allow remote attackers to execute arbitrary PHP code v...
CVE-2007-4637xGB.php in xGB 2.0 does not require authentication for an admin edit action, which allows remote attackers to make unspe...
CVE-2007-4638Blizzard Entertainment StarCraft Brood War 1.15.1 and earlier allows remote attackers to cause a denial of service (appl...
CVE-2007-4639EnterpriseDB Advanced Server 8.2 does not properly handle certain debugging function calls that occur before a call to p...
CVE-2007-4640Unrestricted file upload vulnerability in index.php in Pakupaku CMS 0.4 and earlier allows remote attackers to upload an...
CVE-2007-4641Directory traversal vulnerability in index.php in Pakupaku CMS 0.4 and earlier allows remote attackers to include and ex...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now