2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-4434 | — | — | 1.5% | Aug 20, 2007 | Cross-site scripting (XSS) vulnerability in textfilesearch.asp in the Text File Search ASP (Classic) edition allows remo... |
| CVE-2007-4433 | — | — | 1.1% | Aug 20, 2007 | Cross-site scripting (XSS) vulnerability in textfilesearch.aspx in the Text File Search ASP.NET edition allows remote at... |
| CVE-2007-4425 | — | — | 2.7% | Aug 20, 2007 | Multiple buffer overflows in Live for Speed (LFS) demo, S1, and S2 allow remote authenticated users to (1) cause a denia... |
| CVE-2007-4426 | — | — | 2.6% | Aug 20, 2007 | Live for Speed (LFS) S1 and S2 allows remote attackers to cause a denial of service (server crash) via (1) a certain 0x0... |
| CVE-2007-0437 | — | — | 0.8% | Aug 20, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in the sample Cache' Server Page (CSP) scripts in InterSystems Cache... |
| CVE-2007-4424 | — | — | 1.1% | Aug 18, 2007 | Apple Safari for Windows 3.0.3 and earlier does not prompt the user before downloading a file, which allows remote attac... |
| CVE-2007-4399 | — | — | 1.6% | Aug 18, 2007 | CRLF injection vulnerability in the xmms.bx 1.0 script for BitchX allows user-assisted remote attackers to execute arbit... |
| CVE-2007-4400 | — | — | 1.8% | Aug 18, 2007 | CRLF injection vulnerability in the included media script in Konversation allows user-assisted remote attackers to execu... |
| CVE-2007-4396 | — | — | 2.3% | Aug 18, 2007 | Multiple CRLF injection vulnerabilities in (1) ixmmsa.pl 0.3, (2) l33tmusic.pl 2.00, (3) mpg123.pl 0.01, (4) ogg123.pl 0... |
| CVE-2007-4416 | — | — | 2.4% | Aug 18, 2007 | captcha.php in BellaBook (aka BellaBuffs) allows remote attackers to obtain administrative privileges by sending the adm... |
| CVE-2007-4397 | — | — | 2.1% | Aug 18, 2007 | Multiple CRLF injection vulnerabilities in (1) xmms-thing 1.0, (2) XMMS Remote Control Script 1.07, (3) Disrok 1.0, (4) ... |
| CVE-2007-4398 | — | — | 1.8% | Aug 18, 2007 | Multiple CRLF injection vulnerabilities in the (1) now-playing.rb and (2) xmms.pl 1.1 scripts for WeeChat allow user-ass... |
| CVE-2007-4401 | — | — | 2.4% | Aug 18, 2007 | Multiple CRLF injection vulnerabilities in the Advanced mIRC Integration Plugin and possibly other unspecified scripts i... |
| CVE-2007-4402 | — | — | 3.2% | Aug 18, 2007 | Multiple unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary code via the '|' (pipe) s... |
| CVE-2007-4403 | — | — | 2.9% | Aug 18, 2007 | The mIRC Control Plug-in for Winamp allows user-assisted remote attackers to execute arbitrary code via the '|' (pipe) s... |
| CVE-2007-4404 | — | — | 2.4% | Aug 18, 2007 | ircu 2.10.12.01 allows remote attackers to (1) cause a denial of service (flood wallops) by joining two channels with ce... |
| CVE-2007-4405 | — | — | 1.7% | Aug 18, 2007 | ircu 2.10.12.02 through 2.10.12.04 allows remote attackers to cause a denial of service (memory and bandwidth consumptio... |
| CVE-2007-4406 | — | — | 1.5% | Aug 18, 2007 | ircu 2.10.12.01 through 2.10.12.04 does not remove ops privilege after a join from a server with an older timestamp (TS)... |
| CVE-2007-4407 | — | — | 1.5% | Aug 18, 2007 | ircu 2.10.12.03 and 2.10.12.04 does not associate a timestamp with ops privilege on an unused channel (zannel), which al... |
| CVE-2007-4408 | — | — | 1.3% | Aug 18, 2007 | ircu 2.10.12.05 and earlier ignores timestamps in bounces, which allows remote attackers to take over a channel during a... |
| CVE-2007-4409 | — | — | 1.3% | Aug 18, 2007 | Race condition in ircu 2.10.12.01 through 2.10.12.05 allows remote attackers to set a new Apass during a netburst by arr... |
| CVE-2007-4410 | — | — | 1.1% | Aug 18, 2007 | ircu 2.10.12.05 and earlier does not properly synchronize a kick action in certain cross scenarios, which allows remote ... |
| CVE-2007-4411 | — | — | 1.2% | Aug 18, 2007 | ircu 2.10.12.05 and earlier allows remote attackers to discover the hidden IP address of arbitrary +x users via a series... |
| CVE-2007-4412 | — | — | 0.8% | Aug 18, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in Headstart Solutions DeskPRO 3.0.2 allow remote authenticated user... |
| CVE-2007-4413 | — | — | 0.8% | Aug 18, 2007 | Direct static code injection vulnerability in admincp/user_help.php in Headstart Solutions DeskPRO 3.0.2 allows remote a... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now