2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-4605 | — | — | 2.1% | Aug 31, 2007 | PHP remote file inclusion vulnerability in convert/mvcw.php in Virtual War (VWar) 1.5.0 R15 and earlier allows remote at... |
| CVE-2007-4607 | — | — | 56.4% | Aug 31, 2007 | Buffer overflow in the EasyMailSMTPObj ActiveX control in emsmtp.dll 6.0.1 in the Quiksoft EasyMail SMTP Object, as used... |
| CVE-2007-4609 | — | — | 1.4% | Aug 31, 2007 | eyeOS uses predictable checksum values in the checknum parameter for access control, which allows remote attackers to re... |
| CVE-2007-4610 | — | — | 1.2% | Aug 31, 2007 | Unrestricted file upload vulnerability in config/upload.php in Moonware (aka Dale Mooney Gallery) allows remote attacker... |
| CVE-2007-4611 | — | — | 1.0% | Aug 31, 2007 | SQL injection vulnerability in viewevent.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to execute ar... |
| CVE-2007-4612 | — | — | 1.1% | Aug 31, 2007 | CRLF injection vulnerability in contact.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to add arbitra... |
| CVE-2007-4613 | — | — | 1.4% | Aug 31, 2007 | SSL libraries in BEA WebLogic Server 6.1 Gold through SP7, 7.0 Gold through SP7, and 8.1 Gold through SP5 might allow re... |
| CVE-2007-4614 | — | — | 1.2% | Aug 31, 2007 | BEA WebLogic Server 9.1 does not properly handle propagation of an admin server's security policy change log to temporar... |
| CVE-2007-4615 | — | — | 2.1% | Aug 31, 2007 | The SSL client implementation in BEA WebLogic Server 7.0 SP7, 8.1 SP2 through SP6, 9.0, 9.1, 9.2 Gold through MP2, and 1... |
| CVE-2007-4616 | — | — | 1.8% | Aug 31, 2007 | The SSL server implementation in BEA WebLogic Server 7.0 Gold through SP7, 8.1 Gold through SP6, 9.0, 9.1, 9.2 Gold thro... |
| CVE-2007-4617 | — | — | 2.3% | Aug 31, 2007 | Unspecified vulnerability in BEA WebLogic Server 6.1 Gold through SP7, 7.0 Gold through SP7, and 8.1 Gold through SP4 al... |
| CVE-2007-4618 | — | — | 2.5% | Aug 31, 2007 | Unspecified vulnerability in BEA WebLogic Server 6.1 Gold through SP7 and 7.0 Gold through SP7 allows remote attackers t... |
| CVE-2007-4601 | — | — | 2.2% | Aug 30, 2007 | A regression error in tcp-wrappers 7.6.dbs-10 and 7.6.dbs-11 might allow remote attackers to bypass intended access rest... |
| CVE-2007-4132 | — | — | 2.4% | Aug 30, 2007 | Unspecified vulnerability in Red Hat Network Satellite Server 5.0.0 allows remote authenticated users to execute arbitra... |
| CVE-2007-4134 | — | — | 3.0% | Aug 30, 2007 | Directory traversal vulnerability in extract.c in star before 1.5a84 allows user-assisted remote attackers to overwrite ... |
| CVE-2007-4598 | — | — | 0.3% | Aug 30, 2007 | IBM SurePOS 500 has (1) a default password of "12345" for the manager and (2) blank default passwords for operator accou... |
| CVE-2007-4597 | — | — | 1.0% | Aug 30, 2007 | SQL injection vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 RC 6 allows remote attackers to ex... |
| CVE-2007-4596 | — | — | 7.8% | Aug 30, 2007 | The perl extension in PHP does not follow safe_mode restrictions, which allows context-dependent attackers to execute ar... |
| CVE-2007-4593 | — | — | 0.3% | Aug 29, 2007 | Unspecified vulnerability in vstor2-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (... |
| CVE-2007-4594 | — | — | 0.6% | Aug 29, 2007 | Entrust Entelligence Security Provider (ESP) 8 does not properly validate certificates in certain circumstances involvin... |
| CVE-2007-4595 | — | — | 1.2% | Aug 29, 2007 | Cross-site scripting (XSS) vulnerability in Mayaa before 1.1.12 allows remote attackers to inject arbitrary web script o... |
| CVE-2007-4591 | — | — | 0.4% | Aug 29, 2007 | vstor-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (host operating system crash) a... |
| CVE-2007-4581 | — | — | 1.0% | Aug 29, 2007 | SQL injection vulnerability in acrotxt.php in WBB2-Addon: Acrotxt 1 allows remote attackers to execute arbitrary SQL com... |
| CVE-2007-4589 | — | — | 1.7% | Aug 29, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in InterWorx Hosting Control Panel (InterWorx-CP) Webmaster Level (S... |
| CVE-2007-4590 | — | — | 0.4% | Aug 29, 2007 | The get_system_info command in Ignite-UX C.7.0 through C.7.3, and DynRootDisk (DRD) A.1.0.16.417 through A.2.0.0.592, on... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now