Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
398,576 CVEs1,728 in CISA KEV17,267 with EPSS ≥ 10%25,049 with a public exploitUpdated 28 September 2026
25,049 results · page 326 of 501
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2007-4602 | SQL injection vulnerability in cms/revert-content.php in Implied by Design Micro CMS (Micro-CMS) 3.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. | EXPLOIT ✓MEDIUM 6.8EPSS 0.95% | 31 August 2007 |
| CVE-2007-4597 | SQL injection vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 RC 6 allows remote attackers to execute arbitrary SQL commands via the s[cid] parameter in a search_list action, a different vector than CVE-2007-2549. | EXPLOIT ✓HIGH 7.5EPSS 1.01% | 30 August 2007 |
| CVE-2007-4596 | The perl extension in PHP does not follow safe_mode restrictions, which allows context-dependent attackers to execute arbitrary code via the Perl eval function. | EXPLOIT ✓HIGH 7.5EPSS 7.78% | 30 August 2007 |
| CVE-2007-4586 | Multiple buffer overflows in php_iisfunc.dll in the iisfunc extension for PHP 5.2.0 and earlier allow context-dependent attackers to execute arbitrary code, probably during Unicode conversion, as demonstrated by a long string in the first argument to… | EXPLOIT ✓HIGH 7.5EPSS 9.45% | 29 August 2007 |
| CVE-2007-4585 | Directory traversal vulnerability in activateuser.php in 2532|Gigs 1.2.1 allows remote attackers to include and execute arbitrary local files via a .. | EXPLOIT ✓HIGH 7.5EPSS 2.90% | 29 August 2007 |
| CVE-2007-4584 | Stack-based buffer overflow in BitchX 1.1 Final allows remote IRC servers to execute arbitrary code via a long string in a MODE command, related to the p_mode variable. | EXPLOIT ✓HIGH 10.0EPSS 14.7% | 29 August 2007 |
| CVE-2007-4583 | Multiple absolute path traversal vulnerabilities in the nvUtility.Utility.1 ActiveX control in nvUtility.dll 1.0.14.0 in ACTi Network Video Recorder (NVR) SP2 2.0 allow remote attackers to (1) create or overwrite arbitrary files via a full pathname in… | EXPLOIT ×2 ✓MEDIUM 5.0EPSS 8.04% | 29 August 2007 |
| CVE-2007-4582 | Buffer overflow in the nvUnifiedControl.AUnifiedControl.1 ActiveX control in nvUnifiedControl.dll 1.1.45.0 in ACTi Network Video Recorder (NVR) SP2 2.0 allows remote attackers to execute arbitrary code via a long second argument to the SetText method. | EXPLOIT ✓HIGH 7.5EPSS 9.96% | 29 August 2007 |
| CVE-2007-4581 | SQL injection vulnerability in acrotxt.php in WBB2-Addon: Acrotxt 1 allows remote attackers to execute arbitrary SQL commands via the show parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.01% | 29 August 2007 |
| CVE-2007-4220 | Directory traversal vulnerability in Motorola Timbuktu Pro before 8.6.5 for Windows allows remote attackers to create or delete arbitrary files via a .. | EXPLOIT ✓HIGH 7.8EPSS 3.96% | 29 August 2007 |
| CVE-2007-4566 | Multiple buffer overflows in the login mechanism in sidvault in Alpha Centauri Software SIDVault LDAP Server before 2.0f allow remote attackers to execute arbitrary code via crafted LDAP packets, as demonstrated by a long dc entry in an LDAP bind. | EXPLOIT ×4 ✓HIGH 10.0EPSS 15.3% | 28 August 2007 |
| CVE-2007-4560 | clamav-milter in ClamAV before 0.91.2, when run in black hole mode, allows remote attackers to execute arbitrary commands via shell metacharacters that are used in a certain popen call, involving the "recipient field of sendmail." | EXPLOIT ×3 ✓HIGH 7.6EPSS 83.5% | 28 August 2007 |
| CVE-2006-7222 | Buffer overflow in the CFLICStream::_deltachunk function in FLICSource.cpp in Media Player Classic (MPC) 6.4.9.0 allows user-assisted remote attackers to execute arbitrary code via a crafted FLI file. | EXPLOIT ✓MEDIUM 6.8EPSS 3.76% | 28 August 2007 |
| CVE-2007-4553 | The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via an INVITE message with a Via header that contains a '/' (slash) instead of the required space following the SIP version number. | EXPLOIT ×2 ✓MEDIUM 5.0EPSS 8.21% | 28 August 2007 |
| CVE-2007-4552 | SQL injection vulnerability in index.php in Agares Media Arcadem 2.01 allows remote attackers to execute arbitrary SQL commands via the blockpage parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.00% | 28 August 2007 |
| CVE-2007-4551 | PHP remote file inclusion vulnerability in index.php in Agares Media Arcadem 2.01 allows remote attackers to execute arbitrary PHP code via a URL in the loadpage parameter. | EXPLOIT ×2 ✓HIGH 7.5EPSS 3.02% | 28 August 2007 |
| CVE-2007-4545 | Multiple directory traversal vulnerabilities in Unreal Commander 0.92 build 565 and 573 allow user-assisted remote attackers to create or overwrite arbitrary files via a .. | EXPLOIT ✓MEDIUM 6.8EPSS 1.88% | 27 August 2007 |
| CVE-2007-4537 | Heap-based buffer overflow in the Huffman decompression algorithm implemented in Skulltag 0.97d-beta4.1 and earlier allows remote attackers to execute arbitrary code via a crafted UDP packet. | EXPLOIT ✓MEDIUM 6.8EPSS 4.72% | 27 August 2007 |
| CVE-2007-4535 | The VStr::Resize function in str.cpp in Vavoom 1.24 and earlier allows remote attackers to cause a denial of service (daemon crash) via a string with a negative NewLen value within a certain UDP packet that triggers an assertion error. | EXPLOIT ✓MEDIUM 4.3EPSS 5.18% | 25 August 2007 |
| CVE-2007-4534 | Buffer overflow in the VThinker::BroadcastPrintf function in p_thinker.cpp in Vavoom 1.24 and earlier allows remote attackers to execute arbitrary code via (1) a long string in a chat message and possibly (2) a long name field. | EXPLOIT ✓HIGH 7.5EPSS 11.0% | 25 August 2007 |
| CVE-2007-4533 | Format string vulnerability in the Say command in sv_main.cpp in Vavoom 1.24 and earlier allows remote attackers to execute arbitrary code via format string specifiers in a chat message, related to a call to the BroadcastPrintf function. | EXPLOIT ✓MEDIUM 6.8EPSS 8.49% | 25 August 2007 |
| CVE-2007-4531 | Soldat game server 1.4.2 and earlier, and dedicated server 2.6.2 and earlier, allows remote attackers to cause a client denial of service (crash) via (1) a long string to the file transfer port or (2) a long chat message, or (3) a server denial of… | EXPLOIT ✓MEDIUM 5.0EPSS 3.48% | 25 August 2007 |
| CVE-2007-4528 | The Foreign Function Interface (ffi) extension in PHP 5.0.5 does not follow safe_mode restrictions, which allows context-dependent attackers to execute arbitrary code by loading an arbitrary DLL and calling a function, as demonstrated by kernel32.dll… | EXPLOIT ✓MEDIUM 4.3EPSS 4.84% | 25 August 2007 |
| CVE-2007-4527 | Unrestricted file upload vulnerability in phUploader.php in phphq.Net phUploader 1.2 allows remote attackers to upload and execute arbitrary code via unspecified vectors. | EXPLOIT ✓HIGH 7.5EPSS 3.23% | 25 August 2007 |
| CVE-2007-4524 | PHP remote file inclusion vulnerability in adisplay.php in PhPress 0.2.0 allows remote attackers to execute arbitrary PHP code via a URL in the lang parameter. | EXPLOIT ✓HIGH 7.5EPSS 3.29% | 25 August 2007 |
| CVE-2007-4522 | Multiple SQL injection vulnerabilities in Ripe Website Manager 0.8.9 and earlier allow remote authenticated users to execute arbitrary SQL commands via one or more of the following vectors: the (1) id parameter to (a) pages/delete_page.php, (b)… | EXPLOIT ✓MEDIUM 6.0EPSS 1.73% | 25 August 2007 |
| CVE-2007-4509 | SQL injection vulnerability in index.php in the EventList component (com_eventlist) 0.8 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the did parameter in a details action. | EXPLOIT ✓HIGH 7.5EPSS 2.20% | 23 August 2007 |
| CVE-2007-4508 | Stack-based buffer overflow in Rebellion Asura engine, as used for the server in Rogue Trooper 1.0 and earlier and Prism 1.1.1.0 and earlier, allows remote attackers to execute arbitrary code via a long string in a 0xf007 packet for the challenge B query. | EXPLOIT ✓MEDIUM 6.8EPSS 6.02% | 23 August 2007 |
| CVE-2007-4507 | Multiple buffer overflows in the php_ntuser component for PHP 5.2.3 allow context-dependent attackers to cause a denial of service or execute arbitrary code via long arguments to the (1) ntuser_getuserlist, (2) ntuser_getuserinfo, (3)… | EXPLOIT ✓MEDIUM 6.8EPSS 5.83% | 23 August 2007 |
| CVE-2007-4506 | SQL injection vulnerability in index.php in the NeoRecruit component (com_neorecruit) 1.4 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an offer_view action. | EXPLOIT ✓HIGH 7.5EPSS 2.57% | 23 August 2007 |
| CVE-2007-4505 | SQL injection vulnerability in index.php in the RemoSitory component (com_remository) for Mambo allows remote attackers to execute arbitrary SQL commands via the cat parameter in a selectcat action. | EXPLOIT ✓HIGH 7.5EPSS 1.03% | 23 August 2007 |
| CVE-2007-4504 | Directory traversal vulnerability in index.php in the RSfiles component (com_rsfiles) 1.0.2 and earlier for Joomla! allows remote attackers to read arbitrary files via a .. | EXPLOIT ✓MEDIUM 5.0EPSS 9.49% | 23 August 2007 |
| CVE-2007-4503 | SQL injection vulnerability in index.php in the Nice Talk component (com_nicetalk) 0.9.3 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the tagid parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.57% | 23 August 2007 |
| CVE-2007-4502 | SQL injection vulnerability in index.php in the BibTeX component (com_jombib) 1.3 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the afilter parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.20% | 23 August 2007 |
| CVE-2007-4498 | The Grandstream SIP Phone GXV-3000 with firmware 1.0.1.7, Loader 1.0.0.6, and Boot 1.0.0.18 allows remote attackers to force silent call completion, eavesdrop on the phone's local environment, and cause a denial of service (blocked call reception) via a… | EXPLOIT ✓HIGH 7.8EPSS 13.8% | 23 August 2007 |
| CVE-2007-4491 | SQL injection vulnerability in uyeler2.php in Gurur haber 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.00% | 23 August 2007 |
| CVE-2007-4489 | Buffer overflow in the IUAComFormX ActiveX control in uacomx.ocx 2.0.1 in the eCentrex VOIP Client module allows remote attackers to execute arbitrary code via a long Username argument to the ReInit method. | EXPLOIT ✓MEDIUM 6.8EPSS 4.65% | 22 August 2007 |
| CVE-2007-4486 | Multiple PHP remote file inclusion vulnerabilities in index.php in Linkliste 1.2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) styl[top], (2) url_eintrag, or (3) styl[themen] parameter. | EXPLOIT ✓HIGH 7.5EPSS 3.33% | 22 August 2007 |
| CVE-2007-4482 | Cross-site scripting (XSS) vulnerability in index.php in the Pool 1.0.7 theme for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF). | EXPLOIT ✓MEDIUM 4.3EPSS 3.82% | 22 August 2007 |
| CVE-2007-4479 | Cross-site scripting (XSS) vulnerability in search.html in Search Engine Builder allows remote attackers to inject arbitrary web script or HTML via the searWords parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 1.83% | 22 August 2007 |
| CVE-2007-4463 | The Fileinfo 2.0.9 plugin for Total Commander allows user-assisted remote attackers to cause a denial of service (unhandled exception) via an invalid RVA address function pointer in (1) an IMAGE_THUNK_DATA structure, involving the (a) OriginalFirstThunk… | EXPLOIT ✓MEDIUM 5.0EPSS 3.48% | 21 August 2007 |
| CVE-2007-4459 | Cisco IP Phone 7940 and 7960 with P0S3-08-6-00 firmware, and other SIP firmware before 8.7(0), allows remote attackers to cause a denial of service (device reboot) via (1) a certain sequence of 10 invalid SIP INVITE and OPTIONS messages; or (2) a… | EXPLOIT ×2 ✓HIGH 7.1EPSS 14.0% | 21 August 2007 |
| CVE-2007-4458 | PHP remote file inclusion vulnerability in includes/class/class_tpl.php in Firesoft allows remote attackers to execute arbitrary PHP code via a URL in the cache_file parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.28% | 21 August 2007 |
| CVE-2007-4457 | Directory traversal vulnerability in forumreply.php in Dalai Forum 1.1 allows remote attackers to include and execute arbitrary local files via a .. | EXPLOIT ✓MEDIUM 6.4EPSS 2.29% | 21 August 2007 |
| CVE-2007-4456 | SQL injection vulnerability in index.php in the SimpleFAQ (com_simplefaq) 2.11 component for Mambo allows remote attackers to execute arbitrary SQL commands via the aid parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.38% | 21 August 2007 |
| CVE-2007-4446 | Format string vulnerability in the server in Toribash 2.71 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the NICK command (client nickname) when entering a game. | EXPLOIT ✓HIGH 7.5EPSS 4.17% | 21 August 2007 |
| CVE-2007-4444 | Multiple buffer overflows in Image Space rFactor 1.250 and earlier allow remote attackers to execute arbitrary code via a packet with ID (1) 0x80 or (2) 0x88 to UDP port 34297, related to the buffer containing the server version number. | EXPLOIT ✓HIGH 7.5EPSS 7.26% | 21 August 2007 |
| CVE-2007-4442 | Stack-based buffer overflow in the logging function in the Unreal engine, possibly 2003 and 2004, as used in the internal web server, allows remote attackers to cause a denial of service (application crash) via a request for a long .gif filename in the… | EXPLOIT ✓MEDIUM 5.0EPSS 3.84% | 21 August 2007 |
| CVE-2007-4441 | Buffer overflow in php_win32std.dll in the win32std extension for PHP 5.2.0 and earlier allows context-dependent attackers to execute arbitrary code via a long string in the filename argument to the win_browse_file function. | EXPLOIT ×3 ✓MEDIUM 4.6EPSS 1.52% | 21 August 2007 |
| CVE-2007-4440 | Stack-based buffer overflow in the MercuryS SMTP server in Mercury Mail Transport System, possibly 4.51 and earlier, allows remote attackers to execute arbitrary code via a long AUTH CRAM-MD5 string. | EXPLOIT ×3 ✓HIGH 7.5EPSS 64.5% | 21 August 2007 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.