2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2007-10003HIGH8.8A vulnerability, which was classified as critical, has been found in The Hackers Diet Plugin up to 0.9.6b on WordPress. ...
CVE-2007-10001HIGH7.5A vulnerability classified as problematic has been found in web-cyradm. This affects an unknown part of the file search....
CVE-2007-20001HIGH7.5A flaw was found in StarWind iSCSI target. An attacker could script standard iSCSI Initiator operation(s) to exhaust the...
CVE-2007-6758HIGH7.5Server-side request forgery (SSRF) vulnerability in feed-proxy.php in extjs 5.0.0.
CVE-2007-5743HIGH7.5viewvc 1.0.3 allows improper access control to files in a repository when using the "forbidden" configuration option.
CVE-2007-5659HIGH7.8Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow remote attackers to execute arbitrary code...
CVE-2007-6033HIGH8.8Invensys Wonderware InTouch 8.0 creates a NetDDE share with insecure permissions (Everyone/Full Control), which allows r...
CVE-2007-3749HIGH7.8The kernel in Apple Mac OS X 10.4 through 10.4.10 does not reset the current Mach Thread Port or Thread Exception Port w...
CVE-2007-4268HIGH7.8Integer signedness error in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execut...
CVE-2007-5928HIGH8.1OpenBase 10.0.5 and earlier allows remote authenticated users to trigger a free of an arbitrary memory location via long...
CVE-2007-5927HIGH8.1Directory traversal vulnerability in OpenBase 10.0.5 and earlier allows remote authenticated users to create files with ...
CVE-2007-5778HIGH7.5Mobile Spy (1) stores login credentials in cleartext under the RetinaxStudios registry key, and (2) sends login credenti...
CVE-2007-5544HIGH7.8IBM Lotus Notes before 6.5.6, and 7.x before 7.0.3; and Domino before 6.5.5 FP3, and 7.x before 7.0.2 FP1; uses weak per...
CVE-2007-4988HIGH7.8Sign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context-dependent attackers to ex...
CVE-2007-4961HIGH7.5The login_to_simulator method in Linden Lab Second Life, as used by the secondlife:// protocol handler and possibly othe...
CVE-2007-4150HIGH7.5The Visionsoft Audit on Demand Service (VSAOD) in Visionsoft Audit 12.4.0.0 uses weak cryptography (XOR) when (1) transm...
CVE-2007-4103HIGH7.5The IAX2 channel driver (chan_iax2) in Asterisk Open 1.2.x before 1.2.23, 1.4.x before 1.4.9, and Asterisk Appliance Dev...
CVE-2007-4040HIGH8.8Argument injection vulnerability involving Microsoft Outlook and Outlook Express, when certain URIs are registered, allo...
CVE-2007-3967HIGH7.5Directory traversal vulnerability in index.php in PHP Directory Lister (dirLIST) before 0.1.1 allows remote attackers to...
CVE-2007-3268HIGH7.5The TFTP implementation in IBM Tivoli Provisioning Manager for OS Deployment 5.1 before Fix Pack 3 allows remote attacke...
CVE-2007-3816HIGH7.5JWIG might allow context-dependent attackers to cause a denial of service (service degradation) via loops of references ...
CVE-2007-3409HIGH7.5Net::DNS before 0.60, a Perl module, allows remote attackers to cause a denial of service (stack consumption) via a malf...
CVE-2007-3365HIGH7.5MyServer 0.8.9 and earlier does not properly handle uppercase characters in filename extensions, which allows remote att...
CVE-2007-1285HIGH7.5The Zend Engine in PHP 4.x before 4.4.7, and 5.x before 5.2.2, allows remote attackers to cause a denial of service (sta...
CVE-2007-0897HIGH7.5Clam AntiVirus ClamAV before 0.90 does not close open file descriptors under certain conditions, which allows remote att...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now