2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-4605——PHP remote file inclusion vulnerability in convert/mvcw.php in Virtual War (VWar) 1.5.0 R15 and earlier allows remote at...
CVE-2007-4607——Buffer overflow in the EasyMailSMTPObj ActiveX control in emsmtp.dll 6.0.1 in the Quiksoft EasyMail SMTP Object, as used...
CVE-2007-4609——eyeOS uses predictable checksum values in the checknum parameter for access control, which allows remote attackers to re...
CVE-2007-4610——Unrestricted file upload vulnerability in config/upload.php in Moonware (aka Dale Mooney Gallery) allows remote attacker...
CVE-2007-4611——SQL injection vulnerability in viewevent.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to execute ar...
CVE-2007-4612——CRLF injection vulnerability in contact.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to add arbitra...
CVE-2007-4613——SSL libraries in BEA WebLogic Server 6.1 Gold through SP7, 7.0 Gold through SP7, and 8.1 Gold through SP5 might allow re...
CVE-2007-4614——BEA WebLogic Server 9.1 does not properly handle propagation of an admin server's security policy change log to temporar...
CVE-2007-4615——The SSL client implementation in BEA WebLogic Server 7.0 SP7, 8.1 SP2 through SP6, 9.0, 9.1, 9.2 Gold through MP2, and 1...
CVE-2007-4616——The SSL server implementation in BEA WebLogic Server 7.0 Gold through SP7, 8.1 Gold through SP6, 9.0, 9.1, 9.2 Gold thro...
CVE-2007-4617——Unspecified vulnerability in BEA WebLogic Server 6.1 Gold through SP7, 7.0 Gold through SP7, and 8.1 Gold through SP4 al...
CVE-2007-4618——Unspecified vulnerability in BEA WebLogic Server 6.1 Gold through SP7 and 7.0 Gold through SP7 allows remote attackers t...
CVE-2007-4601——A regression error in tcp-wrappers 7.6.dbs-10 and 7.6.dbs-11 might allow remote attackers to bypass intended access rest...
CVE-2007-4132——Unspecified vulnerability in Red Hat Network Satellite Server 5.0.0 allows remote authenticated users to execute arbitra...
CVE-2007-4134——Directory traversal vulnerability in extract.c in star before 1.5a84 allows user-assisted remote attackers to overwrite ...
CVE-2007-4598——IBM SurePOS 500 has (1) a default password of "12345" for the manager and (2) blank default passwords for operator accou...
CVE-2007-4597——SQL injection vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 RC 6 allows remote attackers to ex...
CVE-2007-4596——The perl extension in PHP does not follow safe_mode restrictions, which allows context-dependent attackers to execute ar...
CVE-2007-4593——Unspecified vulnerability in vstor2-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (...
CVE-2007-4594——Entrust Entelligence Security Provider (ESP) 8 does not properly validate certificates in certain circumstances involvin...
CVE-2007-4595——Cross-site scripting (XSS) vulnerability in Mayaa before 1.1.12 allows remote attackers to inject arbitrary web script o...
CVE-2007-4591——vstor-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (host operating system crash) a...
CVE-2007-4581——SQL injection vulnerability in acrotxt.php in WBB2-Addon: Acrotxt 1 allows remote attackers to execute arbitrary SQL com...
CVE-2007-4589——Multiple cross-site scripting (XSS) vulnerabilities in InterWorx Hosting Control Panel (InterWorx-CP) Webmaster Level (S...
CVE-2007-4590——The get_system_info command in Ignite-UX C.7.0 through C.7.3, and DynRootDisk (DRD) A.1.0.16.417 through A.2.0.0.592, on...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now