2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2007-4434Cross-site scripting (XSS) vulnerability in textfilesearch.asp in the Text File Search ASP (Classic) edition allows remo...
CVE-2007-4433Cross-site scripting (XSS) vulnerability in textfilesearch.aspx in the Text File Search ASP.NET edition allows remote at...
CVE-2007-4425Multiple buffer overflows in Live for Speed (LFS) demo, S1, and S2 allow remote authenticated users to (1) cause a denia...
CVE-2007-4426Live for Speed (LFS) S1 and S2 allows remote attackers to cause a denial of service (server crash) via (1) a certain 0x0...
CVE-2007-0437Multiple cross-site scripting (XSS) vulnerabilities in the sample Cache' Server Page (CSP) scripts in InterSystems Cache...
CVE-2007-4424Apple Safari for Windows 3.0.3 and earlier does not prompt the user before downloading a file, which allows remote attac...
CVE-2007-4399CRLF injection vulnerability in the xmms.bx 1.0 script for BitchX allows user-assisted remote attackers to execute arbit...
CVE-2007-4400CRLF injection vulnerability in the included media script in Konversation allows user-assisted remote attackers to execu...
CVE-2007-4396Multiple CRLF injection vulnerabilities in (1) ixmmsa.pl 0.3, (2) l33tmusic.pl 2.00, (3) mpg123.pl 0.01, (4) ogg123.pl 0...
CVE-2007-4416captcha.php in BellaBook (aka BellaBuffs) allows remote attackers to obtain administrative privileges by sending the adm...
CVE-2007-4397Multiple CRLF injection vulnerabilities in (1) xmms-thing 1.0, (2) XMMS Remote Control Script 1.07, (3) Disrok 1.0, (4) ...
CVE-2007-4398Multiple CRLF injection vulnerabilities in the (1) now-playing.rb and (2) xmms.pl 1.1 scripts for WeeChat allow user-ass...
CVE-2007-4401Multiple CRLF injection vulnerabilities in the Advanced mIRC Integration Plugin and possibly other unspecified scripts i...
CVE-2007-4402Multiple unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary code via the '|' (pipe) s...
CVE-2007-4403The mIRC Control Plug-in for Winamp allows user-assisted remote attackers to execute arbitrary code via the '|' (pipe) s...
CVE-2007-4404ircu 2.10.12.01 allows remote attackers to (1) cause a denial of service (flood wallops) by joining two channels with ce...
CVE-2007-4405ircu 2.10.12.02 through 2.10.12.04 allows remote attackers to cause a denial of service (memory and bandwidth consumptio...
CVE-2007-4406ircu 2.10.12.01 through 2.10.12.04 does not remove ops privilege after a join from a server with an older timestamp (TS)...
CVE-2007-4407ircu 2.10.12.03 and 2.10.12.04 does not associate a timestamp with ops privilege on an unused channel (zannel), which al...
CVE-2007-4408ircu 2.10.12.05 and earlier ignores timestamps in bounces, which allows remote attackers to take over a channel during a...
CVE-2007-4409Race condition in ircu 2.10.12.01 through 2.10.12.05 allows remote attackers to set a new Apass during a netburst by arr...
CVE-2007-4410ircu 2.10.12.05 and earlier does not properly synchronize a kick action in certain cross scenarios, which allows remote ...
CVE-2007-4411ircu 2.10.12.05 and earlier allows remote attackers to discover the hidden IP address of arbitrary +x users via a series...
CVE-2007-4412Multiple cross-site scripting (XSS) vulnerabilities in Headstart Solutions DeskPRO 3.0.2 allow remote authenticated user...
CVE-2007-4413Direct static code injection vulnerability in admincp/user_help.php in Headstart Solutions DeskPRO 3.0.2 allows remote a...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now