Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
399,162 CVEs1,729 in CISA KEV17,272 with EPSS ≥ 10%25,049 with a public exploitUpdated 29 September 2026
25,049 results · page 346 of 501
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2007-1905 | Cross-site scripting (XSS) vulnerability in auth.php in Pineapple Technologies QuizShock 1.6.1 and earlier allows remote attackers to inject arbitrary web script or HTML via encoded special characters in the forward_to parameter, as demonstrated using… | EXPLOIT ✓MEDIUM 4.3EPSS 3.57% | 10 April 2007 |
| CVE-2007-1687 | Multiple buffer overflows in the Internet Pictures Corporation iPIX Image Well ActiveX control (iPIX-ImageWell-ipix.dll) allow remote attackers to execute arbitrary code via unspecified vectors. | EXPLOIT ✓HIGH 10.0EPSS 11.1% | 10 April 2007 |
| CVE-2006-4250 | Buffer overflow in man and mandb (man-db) 2.4.3 and earlier allows local users to execute arbitrary code via crafted arguments to the -H flag. | EXPLOIT ✓MEDIUM 4.6EPSS 1.33% | 10 April 2007 |
| CVE-2007-1897 | SQL injection vulnerability in xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users to execute arbitrary SQL commands via a string parameter value in an XML RPC mt.setPostCategories method call, related to the… | EXPLOIT ✓MEDIUM 6.5EPSS 7.17% | 9 April 2007 |
| CVE-2007-1896 | Directory traversal vulnerability in chat.php in Sky GUNNING MySpeach 3.0.7 and earlier allows remote attackers to include arbitrary local files via a .. | EXPLOIT ✓MEDIUM 5.8EPSS 2.02% | 9 April 2007 |
| CVE-2007-1895 | PHP remote file inclusion vulnerability in chat.php in Sky GUNNING MySpeach 3.0.7 and earlier, when used with PHP 5, allows remote attackers to execute arbitrary PHP code via an ftp URL in a my_ms[root] cookie, a different vector than CVE-2007-0491 and… | EXPLOIT ✓MEDIUM 6.8EPSS 2.32% | 9 April 2007 |
| CVE-2007-1890 | Integer overflow in the msg_receive function in PHP 4 before 4.4.5 and PHP 5 before 5.2.1, on FreeBSD and possibly other platforms, allows context-dependent attackers to execute arbitrary code via certain maxsize values, as demonstrated by 0xffffffff. | EXPLOIT ✓HIGH 7.5EPSS 7.84% | 6 April 2007 |
| CVE-2007-1882 | qcbin/servlet/tdservlet/TDAPI_GeneralWebTreatment in HP Mercury Quality Center 9.0 build 9.1.0.4352 allows remote authenticated users to execute arbitrary SQL commands via the RunQuery method. | EXPLOIT ✓MEDIUM 6.5EPSS 6.10% | 6 April 2007 |
| CVE-2007-1881 | Unspecified vulnerability in KLIF (klif.sys) in Kaspersky Anti-Virus, Anti-Virus for Workstations, and Anti-Virus for File Servers 6.0, and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows local users to gain Ring-0 privileges via… | EXPLOIT ✓MEDIUM 6.8EPSS 0.67% | 6 April 2007 |
| CVE-2007-1001 | Multiple integer overflows in the (1) createwbmp and (2) readwbmp functions in wbmp.c in the GD library (libgd) in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allow context-dependent attackers to execute arbitrary code via Wireless Bitmap (WBMP)… | EXPLOIT ✓MEDIUM 6.8EPSS 8.32% | 6 April 2007 |
| CVE-2007-1868 | The management service in IBM Tivoli Provisioning Manager for OS Deployment before 5.1 Fix Pack 2 does not properly handle multipart/form-data in HTTP POST requests, which allows remote attackers to execute arbitrary code or cause a denial of service… | EXPLOIT ✓HIGH 10.0EPSS 59.3% | 4 April 2007 |
| CVE-2007-1867 | Buffer overflow in IrfanView 3.99 allows remote attackers to execute arbitrary code via a crafted animated cursor (ANI) file. | EXPLOIT ×2 ✓HIGH 10.0EPSS 7.91% | 4 April 2007 |
| CVE-2007-1866 | Stack-based buffer overflow in the dns_decode_reverse_name function in dns_decode.c in dproxy-nexgen allows remote attackers to execute arbitrary code by sending a crafted packet to port 53/udp, a different issue than CVE-2007-1465. | EXPLOIT ✓HIGH 10.0EPSS 10.2% | 4 April 2007 |
| CVE-2007-1215 | Buffer overflow in the Graphics Device Interface (GDI) in Microsoft Windows 2000 SP4; XP SP2; Server 2003 Gold, SP1, and SP2; and Vista allows local users to gain privileges via certain "color-related parameters" in crafted images. | EXPLOIT ×3 ✓HIGH 7.2EPSS 2.72% | 4 April 2007 |
| CVE-2007-1213 | The TrueType Fonts rasterizer in Microsoft Windows 2000 SP4 allows local users to gain privileges via crafted TrueType fonts, which result in an uninitialized function pointer. | EXPLOIT ×3 ✓HIGH 7.2EPSS 3.80% | 4 April 2007 |
| CVE-2007-1212 | Buffer overflow in the Graphics Device Interface (GDI) in Microsoft Windows 2000 SP4; XP SP2; Server 2003 Gold, SP1, and SP2; and Vista allows local users to gain privileges via a crafted Enhanced Metafile (EMF) image format file. | EXPLOIT ×3 ✓MEDIUM 6.6EPSS 2.13% | 4 April 2007 |
| CVE-2007-1211 | Unspecified kernel GDI functions in Microsoft Windows 2000 SP4; XP SP2; and Server 2003 Gold, SP1, and SP2 allows user-assisted remote attackers to cause a denial of service (possibly persistent restart) via a crafted Windows Metafile (WMF) image that… | EXPLOIT ×3 ✓HIGH 7.1EPSS 29.1% | 4 April 2007 |
| CVE-2006-5586 | The Graphics Rendering Engine in Microsoft Windows 2000 SP4 and XP SP2 allows local users to gain privileges via "invalid application window sizes" in layered application windows, aka the "GDI Invalid Window Size Elevation of Privilege Vulnerability." | EXPLOIT ×3 ✓HIGH 7.2EPSS 2.88% | 4 April 2007 |
| CVE-2007-1851 | Multiple directory traversal vulnerabilities in Really Simple PHP and Ajax (RSPA) 2007-03-23 allow remote attackers to include and execute arbitrary local files via a .. | EXPLOIT ✓HIGH 7.5EPSS 6.37% | 3 April 2007 |
| CVE-2007-1849 | Directory traversal vulnerability in 404.php in Drake CMS allows remote attackers to include and execute arbitrary local arbitrary files via a .. | EXPLOIT ✓HIGH 7.5EPSS 2.44% | 3 April 2007 |
| CVE-2007-1847 | SQL injection vulnerability in viewcat.php in the Repository module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.30% | 3 April 2007 |
| CVE-2007-1846 | SQL injection vulnerability in index.php in the MyAds 2.04jp and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter, different vectors than CVE-2006-3341. | EXPLOIT ✓HIGH 7.5EPSS 2.17% | 3 April 2007 |
| CVE-2007-1845 | SQL injection vulnerability in show_event.php in the Expanded Calendar (calendar_panel) 2.00 module for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the m_month parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.24% | 3 April 2007 |
| CVE-2007-1843 | PHP remote file inclusion vulnerability in gmapfactory/params.php in MapLab 2.2.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the gszAppPath parameter. | EXPLOIT ✓MEDIUM 6.8EPSS 3.34% | 3 April 2007 |
| CVE-2007-1842 | Directory traversal vulnerability in login.php in JSBoard before 2.0.12 allows remote attackers to include and execute arbitrary local files via a .. | EXPLOIT ✓HIGH 7.5EPSS 7.46% | 3 April 2007 |
| CVE-2007-1839 | Multiple PHP remote file inclusion vulnerabilities in CodeBB 1.1b3 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter to (1) pass_code.php or (2) lang_select. | EXPLOIT ✓HIGH 7.5EPSS 3.28% | 3 April 2007 |
| CVE-2007-1838 | SQL injection vulnerability in view.php in the Friendfinder 3.3 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the id parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.18% | 3 April 2007 |
| CVE-2007-1837 | Multiple PHP remote file inclusion vulnerabilities in MangoBery CMS 0.5.5 allow remote attackers to execute arbitrary PHP code via a URL in the Site_Path parameter to (1) boxes/quotes.php or (2) templates/mangobery/footer.sample.php. | EXPLOIT ✓HIGH 7.5EPSS 8.77% | 3 April 2007 |
| CVE-2007-1835 | PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions. | EXPLOIT ✓MEDIUM 4.6EPSS 0.69% | 3 April 2007 |
| CVE-2007-1825 | Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. | EXPLOIT ✓HIGH 7.5EPSS 10.4% | 2 April 2007 |
| CVE-2007-1819 | Stack-based buffer overflow in the SPIDERLib.Loader ActiveX control (Spider90.ocx) 9.1.0.4353 in TestDirector (TD) for Mercury Quality Center 9.0 before Patch 12.1, and 8.2 SP1 before Patch 32, allows remote attackers to execute arbitrary code via a… | EXPLOIT ×2 ✓HIGH 9.3EPSS 39.7% | 2 April 2007 |
| CVE-2007-1818 | PHP remote file inclusion vulnerability in MOD_forum_fields_parse.php in the Forum picture and META tags 1.7 module for phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.80% | 2 April 2007 |
| CVE-2007-1817 | SQL injection vulnerability in index.php in the Lykos Reviews (lykos_reviews) 1.00 module for Xoops allows remote attackers to execute arbitrary SQL commands via the uid parameter in a u action. | EXPLOIT ✓HIGH 7.5EPSS 2.21% | 2 April 2007 |
| CVE-2007-1816 | SQL injection vulnerability in viewcat.php in the Tutoriais module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.05% | 2 April 2007 |
| CVE-2007-1815 | SQL injection vulnerability in viewcat.php in the Library module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.05% | 2 April 2007 |
| CVE-2007-1814 | SQL injection vulnerability in viewcat.php in the Core module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2007-0377. | EXPLOIT ✓HIGH 7.5EPSS 1.03% | 2 April 2007 |
| CVE-2007-1813 | SQL injection vulnerability in display.php in the eCal 2.24 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the katid parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.03% | 2 April 2007 |
| CVE-2007-1812 | PHP remote file inclusion vulnerability in utilitaires/gestion_sondage.php in BT-Sondage 112 allows remote attackers to execute arbitrary PHP code via a URL in the repertoire_visiteur parameter. | EXPLOIT ✓HIGH 7.5EPSS 3.39% | 2 April 2007 |
| CVE-2007-1811 | SQL injection vulnerability in index.php in the Tiny Event (tinyevent) 1.01 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action. | EXPLOIT ✓HIGH 7.5EPSS 1.03% | 2 April 2007 |
| CVE-2007-1810 | SQL injection vulnerability in product_details.php in the Kshop 1.17 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the id parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.22% | 2 April 2007 |
| CVE-2007-1809 | Multiple PHP remote file inclusion vulnerabilities in GraFX Company WebSite Builder (CWB) PRO 1.5 allow remote attackers to execute arbitrary PHP code via a URL in the INCLUDE_PATH parameter to (1) cls_headline_prod.php, (2) cls_listorders.php, or (3)… | EXPLOIT ✓HIGH 7.5EPSS 8.37% | 2 April 2007 |
| CVE-2007-1808 | SQL injection vulnerability in show.php in the Camportail 1.1 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the camid parameter in a showcam action. | EXPLOIT ✓HIGH 7.5EPSS 1.22% | 2 April 2007 |
| CVE-2007-1807 | SQL injection vulnerability in modules/myalbum/viewcat.php in the myAlbum-P 2.0 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.06% | 2 April 2007 |
| CVE-2007-1806 | SQL injection vulnerability in categos.php in the RM+Soft Gallery (rmgallery) 1.0 module for Xoops allows remote attackers to execute arbitrary SQL commands via the idcat parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.20% | 2 April 2007 |
| CVE-2007-1805 | SQL injection vulnerability in genre.php in the debaser 0.92 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the genreid parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.03% | 2 April 2007 |
| CVE-2007-1804 | PulseAudio 0.9.5 allows remote attackers to cause a denial of service (daemon crash) via (1) a PA_PSTREAM_DESCRIPTOR_LENGTH value of FRAME_SIZE_MAX_ALLOW sent on TCP port 9875, which triggers a p->export assertion failure in do_read; (2) a… | EXPLOIT ✓HIGH 7.8EPSS 7.40% | 2 April 2007 |
| CVE-2007-1801 | Directory traversal vulnerability in inc/lang.php in sBLOG 0.7.3 Beta allows remote attackers to include and execute arbitrary local files via a .. | EXPLOIT ✓HIGH 7.5EPSS 2.88% | 2 April 2007 |
| CVE-2007-1795 | JCcorp URLshrink 1.3.1 allows remote attackers to execute arbitrary PHP code via the email address field in an HTML link. | EXPLOIT ✓HIGH 10.0EPSS 3.45% | 2 April 2007 |
| CVE-2007-1793 | SPBBCDrv.sys in Symantec Norton Personal Firewall 2006 9.1.0.33 and 9.1.1.7 does not validate certain arguments before being passed to hooked SSDT function handlers, which allows local users to cause a denial of service (crash) or possibly execute… | EXPLOIT ✓MEDIUM 4.9EPSS 1.72% | 2 April 2007 |
| CVE-2006-5820 | The LinkSBIcons method in the SuperBuddy ActiveX control (Sb.SuperBuddy.1) in America Online 9.0 Security Edition dereferences an arbitrary function pointer, which allows remote attackers to execute arbitrary code via a modified pointer value. | EXPLOIT ✓HIGH 9.3EPSS 8.43% | 2 April 2007 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.