2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-4662 | — | — | 3.4% | Sep 4, 2007 | Buffer overflow in the php_openssl_make_REQ function in PHP before 5.2.4 has unknown impact and attack vectors. |
| CVE-2007-4663 | — | — | 2.1% | Sep 4, 2007 | Directory traversal vulnerability in PHP before 5.2.4 allows attackers to bypass open_basedir restrictions via unspecifi... |
| CVE-2007-4664 | — | — | 1.9% | Sep 4, 2007 | Unspecified vulnerability in the (1) attach database and (2) create database functionality in Firebird before 2.0.2, whe... |
| CVE-2007-4665 | — | — | 2.1% | Sep 4, 2007 | Unspecified vulnerability in the server in Firebird before 2.0.2 allows remote attackers to cause a denial of service (d... |
| CVE-2007-4666 | — | — | 2.1% | Sep 4, 2007 | Unspecified vulnerability in the server in Firebird before 2.0.2, when a Superserver/TCP/IP environment is configured, a... |
| CVE-2007-4667 | — | — | 2.1% | Sep 4, 2007 | Unspecified vulnerability in the Services API in Firebird before 2.0.2 allows remote attackers to cause a denial of serv... |
| CVE-2007-4668 | — | — | 1.5% | Sep 4, 2007 | Unspecified vulnerability in the server in Firebird before 2.0.2 allows remote attackers to determine the existence of a... |
| CVE-2007-4658 | — | — | 2.0% | Sep 4, 2007 | The money_format function in PHP 5 before 5.2.4, and PHP 4 before 4.4.8, permits multiple (1) %i and (2) %n tokens, whic... |
| CVE-2007-4669 | — | — | 1.2% | Sep 4, 2007 | The Services API in Firebird before 2.0.2 allows remote authenticated users without SYSDBA privileges to read the server... |
| CVE-2007-4653 | — | — | 1.0% | Sep 4, 2007 | SQL injection vulnerability in links.php in the Links MOD 1.2.2 and earlier for phpBB 2.0.22 and earlier allows remote a... |
| CVE-2007-4652 | — | — | 0.6% | Sep 4, 2007 | The session extension in PHP before 5.2.4 might allow local users to bypass open_basedir restrictions via a session file... |
| CVE-2007-3997 | — | — | 13.8% | Sep 4, 2007 | The (1) MySQL and (2) MySQLi extensions in PHP 4 before 4.4.8, and PHP 5 before 5.2.4, allow remote attackers to bypass ... |
| CVE-2007-3996 | — | — | 4.2% | Sep 4, 2007 | Multiple integer overflows in libgd in PHP before 5.2.4 allow remote attackers to cause a denial of service (application... |
| CVE-2007-3998 | — | — | 3.0% | Sep 4, 2007 | The wordwrap function in PHP 4 before 4.4.8, and PHP 5 before 5.2.4, does not properly use the breakcharlen variable, wh... |
| CVE-2007-4650 | — | — | 1.7% | Sep 4, 2007 | Multiple unspecified vulnerabilities in Gallery before 2.2.3 allow attackers to (1) rename items, (2) read and modify it... |
| CVE-2007-4632 | — | — | 0.6% | Aug 31, 2007 | Cisco IOS 12.2E, 12.2F, and 12.2S places a "no login" line into the VTY configuration when an administrator makes certai... |
| CVE-2007-4633 | — | — | 1.2% | Aug 31, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in Cisco CallManager and Unified Communications Manager (CUCM) befor... |
| CVE-2007-4634 | — | — | 4.3% | Aug 31, 2007 | Multiple SQL injection vulnerabilities in Cisco CallManager and Unified Communications Manager (CUCM) before 3.3(5)sr2b,... |
| CVE-2007-4635 | — | — | 2.1% | Aug 31, 2007 | Yahoo! Messenger 8.1.0.209 and 8.1.0.402 allows remote attackers to cause a denial of service (application crash) via ce... |
| CVE-2007-4636 | — | — | 71.1% | Aug 31, 2007 | Multiple PHP remote file inclusion vulnerabilities in phpBG 0.9.1 allow remote attackers to execute arbitrary PHP code v... |
| CVE-2007-4637 | — | — | 2.2% | Aug 31, 2007 | xGB.php in xGB 2.0 does not require authentication for an admin edit action, which allows remote attackers to make unspe... |
| CVE-2007-4638 | — | — | 6.2% | Aug 31, 2007 | Blizzard Entertainment StarCraft Brood War 1.15.1 and earlier allows remote attackers to cause a denial of service (appl... |
| CVE-2007-4639 | — | — | 5.1% | Aug 31, 2007 | EnterpriseDB Advanced Server 8.2 does not properly handle certain debugging function calls that occur before a call to p... |
| CVE-2007-4640 | — | — | 2.4% | Aug 31, 2007 | Unrestricted file upload vulnerability in index.php in Pakupaku CMS 0.4 and earlier allows remote attackers to upload an... |
| CVE-2007-4641 | — | — | 2.7% | Aug 31, 2007 | Directory traversal vulnerability in index.php in Pakupaku CMS 0.4 and earlier allows remote attackers to include and ex... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now