2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-4605PHP remote file inclusion vulnerability in convert/mvcw.php in Virtual War (VWar) 1.5.0 R15 and earlier allows remote at...
CVE-2007-4607Buffer overflow in the EasyMailSMTPObj ActiveX control in emsmtp.dll 6.0.1 in the Quiksoft EasyMail SMTP Object, as used...
CVE-2007-4609eyeOS uses predictable checksum values in the checknum parameter for access control, which allows remote attackers to re...
CVE-2007-4610Unrestricted file upload vulnerability in config/upload.php in Moonware (aka Dale Mooney Gallery) allows remote attacker...
CVE-2007-4611SQL injection vulnerability in viewevent.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to execute ar...
CVE-2007-4612CRLF injection vulnerability in contact.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to add arbitra...
CVE-2007-4613SSL libraries in BEA WebLogic Server 6.1 Gold through SP7, 7.0 Gold through SP7, and 8.1 Gold through SP5 might allow re...
CVE-2007-4614BEA WebLogic Server 9.1 does not properly handle propagation of an admin server's security policy change log to temporar...
CVE-2007-4615The SSL client implementation in BEA WebLogic Server 7.0 SP7, 8.1 SP2 through SP6, 9.0, 9.1, 9.2 Gold through MP2, and 1...
CVE-2007-4616The SSL server implementation in BEA WebLogic Server 7.0 Gold through SP7, 8.1 Gold through SP6, 9.0, 9.1, 9.2 Gold thro...
CVE-2007-4617Unspecified vulnerability in BEA WebLogic Server 6.1 Gold through SP7, 7.0 Gold through SP7, and 8.1 Gold through SP4 al...
CVE-2007-4618Unspecified vulnerability in BEA WebLogic Server 6.1 Gold through SP7 and 7.0 Gold through SP7 allows remote attackers t...
CVE-2007-4601A regression error in tcp-wrappers 7.6.dbs-10 and 7.6.dbs-11 might allow remote attackers to bypass intended access rest...
CVE-2007-4132Unspecified vulnerability in Red Hat Network Satellite Server 5.0.0 allows remote authenticated users to execute arbitra...
CVE-2007-4134Directory traversal vulnerability in extract.c in star before 1.5a84 allows user-assisted remote attackers to overwrite ...
CVE-2007-4598IBM SurePOS 500 has (1) a default password of "12345" for the manager and (2) blank default passwords for operator accou...
CVE-2007-4597SQL injection vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 RC 6 allows remote attackers to ex...
CVE-2007-4596The perl extension in PHP does not follow safe_mode restrictions, which allows context-dependent attackers to execute ar...
CVE-2007-4593Unspecified vulnerability in vstor2-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (...
CVE-2007-4594Entrust Entelligence Security Provider (ESP) 8 does not properly validate certificates in certain circumstances involvin...
CVE-2007-4595Cross-site scripting (XSS) vulnerability in Mayaa before 1.1.12 allows remote attackers to inject arbitrary web script o...
CVE-2007-4591vstor-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (host operating system crash) a...
CVE-2007-4581SQL injection vulnerability in acrotxt.php in WBB2-Addon: Acrotxt 1 allows remote attackers to execute arbitrary SQL com...
CVE-2007-4589Multiple cross-site scripting (XSS) vulnerabilities in InterWorx Hosting Control Panel (InterWorx-CP) Webmaster Level (S...
CVE-2007-4590The get_system_info command in Ignite-UX C.7.0 through C.7.3, and DynRootDisk (DRD) A.1.0.16.417 through A.2.0.0.592, on...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now