2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-10003 | HIGH | 8.8 | 0.6% | Oct 29, 2023 | A vulnerability, which was classified as critical, has been found in The Hackers Diet Plugin up to 0.9.6b on WordPress. ... |
| CVE-2007-10001 | HIGH | 7.5 | 0.7% | Jan 5, 2023 | A vulnerability classified as problematic has been found in web-cyradm. This affects an unknown part of the file search.... |
| CVE-2007-20001 | HIGH | 7.5 | 1.1% | Feb 6, 2022 | A flaw was found in StarWind iSCSI target. An attacker could script standard iSCSI Initiator operation(s) to exhaust the... |
| CVE-2007-6758 | HIGH | 7.5 | 1.3% | Jan 23, 2020 | Server-side request forgery (SSRF) vulnerability in feed-proxy.php in extjs 5.0.0. |
| CVE-2007-5743 | HIGH | 7.5 | 1.1% | Nov 7, 2019 | viewvc 1.0.3 allows improper access control to files in a repository when using the "forbidden" configuration option. |
| CVE-2007-5659 | HIGH | 7.8 | 94.2% | Feb 12, 2008 | Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow remote attackers to execute arbitrary code... |
| CVE-2007-6033 | HIGH | 8.8 | 3.0% | Nov 20, 2007 | Invensys Wonderware InTouch 8.0 creates a NetDDE share with insecure permissions (Everyone/Full Control), which allows r... |
| CVE-2007-3749 | HIGH | 7.8 | 0.5% | Nov 15, 2007 | The kernel in Apple Mac OS X 10.4 through 10.4.10 does not reset the current Mach Thread Port or Thread Exception Port w... |
| CVE-2007-4268 | HIGH | 7.8 | 0.7% | Nov 15, 2007 | Integer signedness error in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execut... |
| CVE-2007-5928 | HIGH | 8.1 | 1.8% | Nov 10, 2007 | OpenBase 10.0.5 and earlier allows remote authenticated users to trigger a free of an arbitrary memory location via long... |
| CVE-2007-5927 | HIGH | 8.1 | 4.0% | Nov 10, 2007 | Directory traversal vulnerability in OpenBase 10.0.5 and earlier allows remote authenticated users to create files with ... |
| CVE-2007-5778 | HIGH | 7.5 | 1.2% | Nov 1, 2007 | Mobile Spy (1) stores login credentials in cleartext under the RetinaxStudios registry key, and (2) sends login credenti... |
| CVE-2007-5544 | HIGH | 7.8 | 0.3% | Oct 29, 2007 | IBM Lotus Notes before 6.5.6, and 7.x before 7.0.3; and Domino before 6.5.5 FP3, and 7.x before 7.0.2 FP1; uses weak per... |
| CVE-2007-4988 | HIGH | 7.8 | 3.1% | Sep 24, 2007 | Sign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context-dependent attackers to ex... |
| CVE-2007-4961 | HIGH | 7.5 | 1.3% | Sep 18, 2007 | The login_to_simulator method in Linden Lab Second Life, as used by the secondlife:// protocol handler and possibly othe... |
| CVE-2007-4150 | HIGH | 7.5 | 1.0% | Aug 3, 2007 | The Visionsoft Audit on Demand Service (VSAOD) in Visionsoft Audit 12.4.0.0 uses weak cryptography (XOR) when (1) transm... |
| CVE-2007-4103 | HIGH | 7.5 | 5.9% | Jul 31, 2007 | The IAX2 channel driver (chan_iax2) in Asterisk Open 1.2.x before 1.2.23, 1.4.x before 1.4.9, and Asterisk Appliance Dev... |
| CVE-2007-4040 | HIGH | 8.8 | 13.5% | Jul 27, 2007 | Argument injection vulnerability involving Microsoft Outlook and Outlook Express, when certain URIs are registered, allo... |
| CVE-2007-3967 | HIGH | 7.5 | 1.8% | Jul 25, 2007 | Directory traversal vulnerability in index.php in PHP Directory Lister (dirLIST) before 0.1.1 allows remote attackers to... |
| CVE-2007-3268 | HIGH | 7.5 | 2.2% | Jul 18, 2007 | The TFTP implementation in IBM Tivoli Provisioning Manager for OS Deployment 5.1 before Fix Pack 3 allows remote attacke... |
| CVE-2007-3816 | HIGH | 7.5 | 2.1% | Jul 17, 2007 | JWIG might allow context-dependent attackers to cause a denial of service (service degradation) via loops of references ... |
| CVE-2007-3409 | HIGH | 7.5 | 3.5% | Jun 26, 2007 | Net::DNS before 0.60, a Perl module, allows remote attackers to cause a denial of service (stack consumption) via a malf... |
| CVE-2007-3365 | HIGH | 7.5 | 6.0% | Jun 22, 2007 | MyServer 0.8.9 and earlier does not properly handle uppercase characters in filename extensions, which allows remote att... |
| CVE-2007-1285 | HIGH | 7.5 | 18.2% | Mar 6, 2007 | The Zend Engine in PHP 4.x before 4.4.7, and 5.x before 5.2.2, allows remote attackers to cause a denial of service (sta... |
| CVE-2007-0897 | HIGH | 7.5 | 3.4% | Feb 16, 2007 | Clam AntiVirus ClamAV before 0.90 does not close open file descriptors under certain conditions, which allows remote att... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now