2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-4561Heap-based buffer overflow in the RTSP service in Helix DNA Server before 11.1.4 allows remote attackers to execute arbi...
CVE-2007-4562Unspecified vulnerability in Hitachi DABroker before 03-02-/D and Cosminexus DABroker before 02-04-/C and 03-05-/E allow...
CVE-2007-4557Cross-site scripting (XSS) vulnerability in the webacc servlet in Novell GroupWise 6.5 WebAccess allows remote attackers...
CVE-2007-4556Struts support in OpenSymphony XWork before 1.2.3, and 2.x before 2.0.4, as used in WebWork and Apache Struts, recursive...
CVE-2007-4563Cosminexus Manager in Cosminexus Application Server 06-50 and later might assign the wrong user's group permissions to l...
CVE-2007-4564Cosminexus Manager in Cosminexus Application Server 07-00 and later might assign the wrong user's group permissions to l...
CVE-2007-4566Multiple buffer overflows in the login mechanism in sidvault in Alpha Centauri Software SIDVault LDAP Server before 2.0f...
CVE-2007-4560clamav-milter in ClamAV before 0.91.2, when run in black hole mode, allows remote attackers to execute arbitrary command...
CVE-2007-4558Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-4134. Reason: This candidate is a duplicate of...
CVE-2007-4565sink.c in fetchmail before 6.3.9 allows context-dependent attackers to cause a denial of service (NULL dereference and a...
CVE-2007-4555Cross-site scripting (XSS) vulnerability in Ipswitch WS_FTP allows remote attackers to inject arbitrary web script or HT...
CVE-2007-4554Cross-site scripting (XSS) vulnerability in tiki-remind_password.php in Tikiwiki (aka Tiki CMS/Groupware) 1.9.7 allows r...
CVE-2007-4549Multiple buffer overflows in ALPass 2.7 English and 3.02 Korean allow user-assisted remote attackers to execute arbitrar...
CVE-2007-4550Format string vulnerability in ALPass 2.7 English and 3.02 Korean might allow user-assisted remote attackers to execute ...
CVE-2007-4551PHP remote file inclusion vulnerability in index.php in Agares Media Arcadem 2.01 allows remote attackers to execute arb...
CVE-2007-4552SQL injection vulnerability in index.php in Agares Media Arcadem 2.01 allows remote attackers to execute arbitrary SQL c...
CVE-2007-4553The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) vi...
CVE-2007-4548The login method in LoginModule implementations in Apache Geronimo 2.0 does not throw FailedLoginException for failed lo...
CVE-2007-4544Cross-site scripting (XSS) vulnerability in wp-newblog.php in WordPress multi-user (MU) 1.0 and earlier allows remote at...
CVE-2007-4545Multiple directory traversal vulnerabilities in Unreal Commander 0.92 build 565 and 573 allow user-assisted remote attac...
CVE-2007-4546Unreal Commander 0.92 build 565 and 573 lists the filenames from the Central Directory of a ZIP archive, but extracts to...
CVE-2007-4547Unreal Commander 0.92 build 565 and 573 writes portions of heap memory into local files when extracting from an archive ...
CVE-2007-4543Cross-site scripting (XSS) vulnerability in enter_bug.cgi in Bugzilla 2.17.1 through 2.20.4, 2.22.x before 2.22.3, and 3...
CVE-2007-4537Heap-based buffer overflow in the Huffman decompression algorithm implemented in Skulltag 0.97d-beta4.1 and earlier allo...
CVE-2007-4539The WebService (XML-RPC) interface in Bugzilla 2.23.3 through 3.0.0 does not enforce permissions for the time-tracking f...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now