2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-4505SQL injection vulnerability in index.php in the RemoSitory component (com_remository) for Mambo allows remote attackers ...
CVE-2007-4511The Sun Admin Console in Sun Application Server 9.0_0.1 does not apply certain configuration changes persistently, which...
CVE-2007-4498The Grandstream SIP Phone GXV-3000 with firmware 1.0.1.7, Loader 1.0.0.6, and Boot 1.0.0.18 allows remote attackers to f...
CVE-2007-4499Unrestricted file upload vulnerability in output.php in American Financing eMail Image Upload 4.1 allows remote attacker...
CVE-2007-4500Unspecified vulnerability in TunnelRunner in SSHKeychain before 0.8.2 beta, and possibly later versions, allows local us...
CVE-2007-4501Unspecified vulnerability in PassphraseRequester in SSHKeychain before 0.8.2 beta allows attackers to obtain sensitive i...
CVE-2007-4502SQL injection vulnerability in index.php in the BibTeX component (com_jombib) 1.3 and earlier for Joomla! allows remote ...
CVE-2007-4503SQL injection vulnerability in index.php in the Nice Talk component (com_nicetalk) 0.9.3 and earlier for Joomla! allows ...
CVE-2007-4504Directory traversal vulnerability in index.php in the RSfiles component (com_rsfiles) 1.0.2 and earlier for Joomla! allo...
CVE-2007-4506SQL injection vulnerability in index.php in the NeoRecruit component (com_neorecruit) 1.4 and earlier for Joomla! allows...
CVE-2007-4507Multiple buffer overflows in the php_ntuser component for PHP 5.2.3 allow context-dependent attackers to cause a denial ...
CVE-2007-4508Stack-based buffer overflow in Rebellion Asura engine, as used for the server in Rogue Trooper 1.0 and earlier and Prism...
CVE-2007-4509SQL injection vulnerability in index.php in the EventList component (com_eventlist) 0.8 and earlier for Joomla! allows r...
CVE-2007-4510ClamAV before 0.91.2, as used in Kolab Server 2.0 through 2.2beta1 and other products, allows remote attackers to cause ...
CVE-2007-4494The tipafriend function in eZ publish before 3.8.9, and 3.9 before 3.9.3, does not limit access by anonymous users, whic...
CVE-2007-4495Unspecified vulnerability in the ata disk driver in Sun Solaris 10 on the x86 platform before 20070821 allows local user...
CVE-2007-4493eZ publish before 3.8.9, and 3.9 before 3.9.3, does not properly check permissions on module views that lack a policy fu...
CVE-2007-4491SQL injection vulnerability in uyeler2.php in Gurur haber 2.0 allows remote attackers to execute arbitrary SQL commands ...
CVE-2007-4492Multiple unspecified vulnerabilities in the ata disk driver in Sun Solaris 8, 9, and 10 on the x86 platform before 20070...
CVE-2007-4488Multiple cross-site scripting (XSS) vulnerabilities in the Siemens Gigaset SE361 WLAN router with firmware 1.00.0 allow ...
CVE-2007-4477The administration interface in the Planet VC-200M VDSL2 router allows remote attackers to cause a denial of service (ad...
CVE-2007-4478Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer 6.0 and 7 allows user-assisted remote attackers ...
CVE-2007-4479Cross-site scripting (XSS) vulnerability in search.html in Search Engine Builder allows remote attackers to inject arbit...
CVE-2007-4480Cross-site scripting (XSS) vulnerability in index.php in the Sirius 1.0 theme for WordPress allows remote attackers to i...
CVE-2007-4481Cross-site scripting (XSS) vulnerability in index.php in the (1) Blix 0.9.1 and (2) Blix 0.9.1 Rus themes for WordPress ...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now