2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-4365 | — | — | 1.1% | Aug 15, 2007 | Cross-site scripting (XSS) vulnerability in eXV2 CMS 2.0.5 and earlier allows remote attackers to inject arbitrary web s... |
| CVE-2007-4360 | — | — | 1.5% | Aug 15, 2007 | Unspecified vulnerability in Dell Remote Access Card 4 (DRAC4) with firmware 1.50 Build 02.16 allows remote attackers to... |
| CVE-2007-4361 | — | — | 3.0% | Aug 15, 2007 | NETGEAR (formerly Infrant) ReadyNAS RAIDiator before 4.00b2-p2-T1 beta creates a default SSH root password derived from ... |
| CVE-2007-4362 | — | — | 1.1% | Aug 15, 2007 | SQL injection vulnerability in category.php in Prozilla Webring allows remote attackers to execute arbitrary SQL command... |
| CVE-2007-4363 | — | — | 2.3% | Aug 15, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in the nodereference module in Drupal Content Construction Kit (CCK)... |
| CVE-2007-4364 | — | — | 2.8% | Aug 15, 2007 | Fedora Commons before 2.2.1 does not properly handle certain authentication requests involving Java Naming and Directory... |
| CVE-2007-2928 | — | — | 4.6% | Aug 15, 2007 | Format string vulnerability in the IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.... |
| CVE-2007-0319 | — | — | 5.6% | Aug 15, 2007 | Multiple stack-based buffer overflows in the Motive ActiveEmailTest.EmailData (ActiveUtils EmailData) ActiveX control in... |
| CVE-2007-2240 | — | — | 2.6% | Aug 15, 2007 | The IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.dll before 1.2.8.0 and possibly... |
| CVE-2007-4353 | — | — | 0.3% | Aug 15, 2007 | Multiple buffer overflows in IBM AIX 5.2 and 5.3 allow local users in the system group to gain root privileges via unspe... |
| CVE-2007-4354 | — | — | 0.4% | Aug 15, 2007 | Buffer overflow in fileplace in bos.perf.tools in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecif... |
| CVE-2007-4355 | — | — | 0.4% | Aug 15, 2007 | Buffer overflow in the at program on IBM AIX 5.3 allows local users to gain privileges via unspecified vectors. |
| CVE-2007-4356 | — | — | 5.6% | Aug 15, 2007 | Microsoft Internet Explorer 6 and 7 embeds FTP credentials in HTML files that are retrieved during an FTP session, which... |
| CVE-2007-4357 | — | — | 1.3% | Aug 15, 2007 | Mozilla Firefox 2.0.0.6 and earlier allows remote attackers to spoof the contents of the status bar via a link to a data... |
| CVE-2007-3032 | — | — | 25.2% | Aug 14, 2007 | Unspecified vulnerability in Windows Vista Contacts Gadget in Windows Vista allows user-assisted remote attackers to exe... |
| CVE-2007-3382 | — | — | 37.5% | Aug 14, 2007 | Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1.36, and 3.3 to 3.3.2 treats single quotes ... |
| CVE-2007-3385 | — | — | 16.9% | Aug 14, 2007 | Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1.36, and 3.3 to 3.3.2 does not properly han... |
| CVE-2007-3386 | — | — | 59.0% | Aug 14, 2007 | Cross-site scripting (XSS) vulnerability in the Host Manager Servlet for Apache Tomcat 6.0.0 to 6.0.13 and 5.5.0 to 5.5.... |
| CVE-2007-3033 | — | — | 28.4% | Aug 14, 2007 | Cross-site scripting (XSS) vulnerability in Windows Vista Feed Headlines Gadget (aka Sidebar RSS Feeds Gadget) in Window... |
| CVE-2007-1749 | — | — | 41.5% | Aug 14, 2007 | Integer underflow in the CDownloadSink class code in the Vector Markup Language (VML) component (VGX.DLL), as used in In... |
| CVE-2007-3891 | — | — | 25.2% | Aug 14, 2007 | Unspecified vulnerability in Windows Vista Weather Gadgets in Windows Vista allows remote attackers to execute arbitrary... |
| CVE-2007-0948 | — | — | 12.1% | Aug 14, 2007 | Heap-based buffer overflow in Microsoft Virtual PC 2004 and PC for Mac 7.1 and 7, and Virtual Server 2005 and 2005 R2, a... |
| CVE-2007-2224 | — | — | 34.5% | Aug 14, 2007 | Object linking and embedding (OLE) Automation, as used in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, O... |
| CVE-2007-3041 | — | — | 29.0% | Aug 14, 2007 | Unspecified vulnerability in the pdwizard.ocx ActiveX object for Internet Explorer 5.01, 6 SP1, and 7 allows remote atta... |
| CVE-2007-2223 | — | — | 48.7% | Aug 14, 2007 | Microsoft XML Core Services (MSXML) 3.0 through 6.0 allows remote attackers to execute arbitrary code via the substringD... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now