2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-5967 | MEDIUM | 6.5 | 0.5% | May 17, 2021 | A flaw in Mozilla's embedded certificate code might allow web sites to install root certificates on devices without user... |
| CVE-2007-4774 | MEDIUM | 5.9 | 1.7% | Jan 15, 2020 | The Linux kernel before 2.4.36-rc1 has a race condition. It was possible to bypass systrace policies by flooding the ptr... |
| CVE-2007-3732 | MEDIUM | 5.5 | 0.4% | Nov 7, 2019 | In Linux 2.6 before 2.6.23, the TRACE_IRQS_ON function in iret_exc calls a C function without ensuring that the segments... |
| CVE-2007-6716 | MEDIUM | 5.5 | 0.5% | Sep 4, 2008 | fs/direct-io.c in the dio subsystem in the Linux kernel before 2.6.23 does not properly zero out the dio struct, which a... |
| CVE-2007-3650 | MEDIUM | 5.3 | 1.0% | Jul 9, 2008 | myWebland myBloggie 2.1.6 allow remote attackers to obtain sensitive information via (1) an invalid year parameter to ca... |
| CVE-2007-3651 | MEDIUM | 5.3 | 1.0% | Jul 9, 2008 | class/page.php in Farsi Script (aka FaScript) FaName 1.0 allows remote attackers to obtain sensitive information via a '... |
| CVE-2007-5954 | MEDIUM | 6.1 | 1.0% | Nov 14, 2007 | Cross-site scripting (XSS) vulnerability in buscador.php in JLMForo System allows remote attackers to inject arbitrary w... |
| CVE-2007-5817 | MEDIUM | 6.1 | 1.0% | Nov 5, 2007 | dialog.php in CONTENTCustomizer 3.1mp and earlier allows remote attackers to perform certain privileged actions via a (1... |
| CVE-2007-5626 | MEDIUM | 5.5 | 0.3% | Oct 23, 2007 | make_catalog_backup in Bacula 2.2.5, and probably earlier, sends a MySQL password as a command line argument, and someti... |
| CVE-2007-5460 | MEDIUM | 4.6 | 2.2% | Oct 15, 2007 | Microsoft ActiveSync 4.1, as used in Windows Mobile 5.0, uses weak encryption (XOR obfuscation with a fixed key) when se... |
| CVE-2007-4465 | MEDIUM | 6.1 | 26.2% | Sep 14, 2007 | Cross-site scripting (XSS) vulnerability in mod_autoindex.c in the Apache HTTP Server before 2.2.6, when the charset on ... |
| CVE-2007-4786 | MEDIUM | 5.3 | 0.5% | Sep 10, 2007 | Cisco Adaptive Security Appliance (ASA) running PIX 7.0 before 7.0.7.1, 7.1 before 7.1.2.61, 7.2 before 7.2.2.34, and 8.... |
| CVE-2007-3968 | MEDIUM | 5.3 | 1.3% | Jul 25, 2007 | index.php in dirLIST before 0.1.1 allows remote attackers to list the contents of an excluded folder via a modified URL ... |
| CVE-2007-3484 | MEDIUM | 6.1 | 0.4% | Jun 28, 2007 | Cross-site scripting (XSS) vulnerability in search.php in Google Custom Search Engine allows remote attackers to inject ... |
| CVE-2007-2237 | MEDIUM | 5.5 | 15.4% | Jun 6, 2007 | Microsoft Windows Graphics Device Interface (GDI+, GdiPlus.dll) allows context-dependent attackers to cause a denial of ... |
| CVE-2007-2723 | MEDIUM | 5.5 | 1.5% | May 16, 2007 | Media Player Classic 6.4.9.0 allows user-assisted remote attackers to cause a denial of service (web browser crash) via ... |
| CVE-2007-2479 | MEDIUM | 5.9 | 2.5% | May 3, 2007 | Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to obtain potentially sensitive information via lon... |
| CVE-2007-1679 | MEDIUM | 5.4 | 0.9% | Mar 26, 2007 | Multiple cross-site scripting (XSS) vulnerabilities in Horde Groupware Webmail 1.0 allow remote authenticated users to i... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now