Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
396,416 CVEs1,721 in CISA KEV17,395 with EPSS ≥ 10%25,049 with a public exploitUpdated 23 September 2026
17,395 results · page 297 of 348
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2007-3825 | Multiple stack-based buffer overflows in the RPC implementation in alert.exe before 8.0.255.0 in CA (formerly Computer Associates) Alert Notification Server, as used in Threat Manager for the Enterprise, Protection Suites, certain BrightStor ARCserve… | HIGH 9.3EPSS 14.0% | 18 July 2007 |
| CVE-2007-3855 | Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote authenticated users to have an unknown impact via (1) SYS.DBMS_DRS in the DataGuard component (DB03), (2) SYS.DBMS_STANDARD in the… | EXPLOIT ×2 ✓MEDIUM 6.5EPSS 15.8% | 18 July 2007 |
| CVE-2007-3764 | The Skinny channel driver (chan_skinny) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial… | EXPLOIT ✓MEDIUM 5.0EPSS 31.5% | 18 July 2007 |
| CVE-2007-3763 | The IAX2 channel driver (chan_iax2) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of… | EXPLOIT ✓MEDIUM 5.0EPSS 26.6% | 18 July 2007 |
| CVE-2007-3832 | Buffer overflow in the AOL Instant Messenger (AIM) protocol handler in AIM.DLL in Cerulean Studios Trillian allows remote attackers to execute arbitrary code via a malformed aim: URI, as demonstrated by a long URI beginning with the aim:///#1111111/… | EXPLOIT ✓HIGH 9.3EPSS 11.8% | 17 July 2007 |
| CVE-2007-3826 | Microsoft Internet Explorer 7 on Windows XP SP2 allows remote attackers to prevent users from leaving a site, spoof the address bar, and conduct phishing and other attacks via repeated document.open function calls after a user requests a new page, but… | HIGH 9.3EPSS 28.7% | 17 July 2007 |
| CVE-2007-3823 | The Logging Server (Logsrv.exe) in IPSwitch WS_FTP 7.5.29.0 allows remote attackers to cause a denial of service (daemon crash) by sending a crafted packet containing a long string to port 5151/udp. | HIGH 7.8EPSS 25.2% | 17 July 2007 |
| CVE-2007-3813 | PHP remote file inclusion vulnerability in include/user.php in the NoBoard BETA module for MKPortal allows remote attackers to execute arbitrary PHP code via a URL in the MK_PATH parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 59.4% | 17 July 2007 |
| CVE-2007-3806 | The glob function in PHP 5.2.3 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via an invalid value of the flags parameter, probably related to memory corruption or an invalid read on win32 platforms,… | EXPLOIT ✓MEDIUM 6.8EPSS 10.7% | 17 July 2007 |
| CVE-2007-3798 | Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrary code via crafted TLVs in a BGP packet, related to an unchecked return value. | EXPLOIT ✓CRITICAL 9.8EPSS 70.4% | 16 July 2007 |
| CVE-2007-3780 | MySQL Community Server before 5.0.45 allows remote attackers to cause a denial of service (daemon crash) via a malformed password packet in the connection protocol. | MEDIUM 5.0EPSS 14.1% | 15 July 2007 |
| CVE-2007-2417 | Heap-based buffer overflow in _mprosrv.exe in Progress Software Progress 9.1E and OpenEdge 10.1x, as used by the RSA Authentication Manager 6.0 and 6.1, SecurID Appliance 2.0, ACE/Server 5.2, and possibly other products, allows remote attackers to… | HIGH 10.0EPSS 16.2% | 15 July 2007 |
| CVE-2007-2394 | Integer overflow in Apple Quicktime before 7.2 on Mac OS X 10.3.9 and 10.4.9 allows user-assisted remote attackers to execute arbitrary code via crafted (1) title and (2) author fields in an SMIL file, related to improper calculations for memory… | EXPLOIT ×2 ✓HIGH 9.3EPSS 12.1% | 15 July 2007 |
| CVE-2007-3697 | PHP remote file inclusion vulnerability in phpbb/sendmsg.php in FlashBB 1.1.8 and earlier allows remote attackers to execute arbitrary code via a URL in the phpbb_root_path parameter. | EXPLOIT ✓HIGH 7.5EPSS 12.8% | 11 July 2007 |
| CVE-2007-3456 | Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value for a (1) Long string or (2) XML variable type in a crafted (a) FLV or (b) SWF file, related to an "input… | EXPLOIT ✓HIGH 9.3EPSS 56.3% | 11 July 2007 |
| CVE-2007-3038 | The Teredo interface in Microsoft Windows Vista and Vista x64 Edition does not properly handle certain network traffic, which allows remote attackers to bypass firewall blocking rules and obtain sensitive information via crafted IPv6 traffic, aka… | HIGH 7.8EPSS 35.2% | 10 July 2007 |
| CVE-2007-3030 | Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, and 2003 Viewer allows user-assisted remote attackers to execute arbitrary code via a malformed Excel file involving the "denoting [of] the start of a Workspace designation", which results in memory… | HIGH 7.6EPSS 25.0% | 10 July 2007 |
| CVE-2007-3029 | Unspecified vulnerability in Microsoft Excel 2002 SP3 and 2003 SP2 allows user-assisted remote attackers to execute arbitrary code via a malformed Excel file containing multiple active worksheets, which results in memory corruption. | HIGH 9.3EPSS 30.9% | 10 July 2007 |
| CVE-2007-3028 | The LDAP service in Windows Active Directory in Microsoft Windows 2000 Server SP4 does not properly check "the number of convertible attributes", which allows remote attackers to cause a denial of service (service unavailability) via a crafted LDAP… | MEDIUM 5.0EPSS 39.7% | 10 July 2007 |
| CVE-2007-1756 | Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2003 Viewer, and Office Excel 2007 does not properly validate version information, which allows user-assisted remote attackers to execute arbitrary code via a crafted Excel file, aka "Calculation Error… | HIGH 9.3EPSS 32.0% | 10 July 2007 |
| CVE-2007-1754 | PUBCONV.DLL in Microsoft Office Publisher 2007 does not properly clear memory when transferring data from disk to memory, which allows user-assisted remote attackers to execute arbitrary code via a malformed .pub page via a certain negative value, which… | HIGH 9.3EPSS 32.8% | 10 July 2007 |
| CVE-2007-0043 | The Just In Time (JIT) Compiler service in Microsoft .NET Framework 1.0, 1.1, and 2.0 for Windows 2000, XP, Server 2003, and Vista allows user-assisted remote attackers to execute arbitrary code via unspecified vectors involving an "unchecked buffer,"… | HIGH 9.3EPSS 30.7% | 10 July 2007 |
| CVE-2007-0042 | Interpretation conflict in ASP.NET in Microsoft .NET Framework 1.0, 1.1, and 2.0 for Windows 2000, XP, Server 2003, and Vista allows remote attackers to access configuration files and obtain sensitive information, and possibly bypass security mechanisms… | EXPLOIT ✓HIGH 7.8EPSS 76.2% | 10 July 2007 |
| CVE-2007-0041 | The PE Loader service in Microsoft .NET Framework 1.0, 1.1, and 2.0 for Windows 2000, XP, Server 2003, and Vista allows remote attackers to execute arbitrary code via unspecified vectors involving an "unchecked buffer" and unvalidated message lengths,… | HIGH 9.3EPSS 30.7% | 10 July 2007 |
| CVE-2007-0040 | The LDAP service in Windows Active Directory in Microsoft Windows 2000 Server SP4, Server 2003 SP1 and SP2, Server 2003 x64 Edition and SP2, and Server 2003 for Itanium-based Systems SP1 and SP2 allows remote attackers to execute arbitrary code via a… | HIGH 10.0EPSS 39.2% | 10 July 2007 |
| CVE-2007-3670 | Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with Firefox installed and certain URIs registered, allows remote attackers to conduct cross-browser scripting attacks and execute arbitrary commands via shell… | EXPLOIT ✓MEDIUM 4.3EPSS 29.4% | 10 July 2007 |
| CVE-2007-3655 | Stack-based buffer overflow in javaws.exe in Sun Java Web Start in JRE 5.0 Update 11 and earlier, and 6.0 Update 1 and earlier, allows remote attackers to execute arbitrary code via a long codebase attribute in a JNLP file. | EXPLOIT ×2 ✓MEDIUM 6.8EPSS 12.3% | 10 July 2007 |
| CVE-2007-3632 | Multiple PHP remote file inclusion vulnerabilities in LimeSurvey (aka PHPSurveyor) 1.49RC2 allow remote attackers to execute arbitrary PHP code via a URL in the homedir parameter to (1) OLE/PPS/File.php, (2) OLE/PPS/Root.php, (3)… | EXPLOIT ✓MEDIUM 6.8EPSS 61.5% | 10 July 2007 |
| CVE-2007-3624 | Heap-based buffer overflow in the Message HTTP Server in SAP Message Server allows remote attackers to execute arbitrary code via a long string in the group parameter to /msgserver/html/group. | EXPLOIT ✓HIGH 10.0EPSS 36.8% | 9 July 2007 |
| CVE-2007-3614 | Multiple stack-based buffer overflows in waHTTP.exe (aka the SAP DB Web Server) in SAP DB, possibly 7.3 through 7.5, allow remote attackers to execute arbitrary code via (1) a certain cookie value; (2) a certain additional parameter, related to… | EXPLOIT ×3 ✓HIGH 7.5EPSS 70.0% | 6 July 2007 |
| CVE-2007-3605 | Stack-based buffer overflow in the kweditcontrol.kwedit.1 ActiveX control in FrontEnd\SapGui\kwedit.dll in the EnjoySAP SAP GUI allows remote attackers to execute arbitrary code via a long argument to the PrepareToPostHTML function. | EXPLOIT ×2 ✓HIGH 7.6EPSS 69.9% | 6 July 2007 |
| CVE-2007-3576 | Microsoft Internet Explorer 6 executes web script from URIs of arbitrary scheme names ending with the "script" character sequence, using the (1) vbscript: handler for scheme names with 7 through 9 characters, and the (2) javascript: handler for scheme… | MEDIUM 4.3EPSS 12.9% | 5 July 2007 |
| CVE-2007-3554 | Stack-based buffer overflow in the HPSDDX Class (SDD) ActiveX control in sdd.dll in HP Instant Support - Driver Check before 1.5.0.3 allows remote attackers to execute arbitrary code via a long argument to the queryHub function. | EXPLOIT ×2 ✓HIGH 7.6EPSS 17.9% | 4 July 2007 |
| CVE-2007-3550 | Microsoft Internet Explorer 6.0 and 7.0 allows remote attackers to fill Zones with arbitrary domains using certain metacharacters such as wildcards via JavaScript, which results in a denial of service (website suppression and resource consumption), aka… | HIGH 7.8EPSS 27.5% | 3 July 2007 |
| CVE-2007-3536 | Multiple buffer overflows in the AMX NetLinx VNC (AmxVnc) ActiveX control in AmxVnc.dll 1.0.13.0 allow remote attackers to execute arbitrary code via long (1) Host, (2) Password, or (3) LogFile property values. | EXPLOIT ✓HIGH 7.6EPSS 13.7% | 3 July 2007 |
| CVE-2007-3524 | Multiple PHP remote file inclusion vulnerabilities in Ripe Website Manager 0.8.9 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the level parameter to (1) admin/includes/author_panel_header.php or (2)… | EXPLOIT ✓MEDIUM 6.8EPSS 64.2% | 3 July 2007 |
| CVE-2007-3522 | Multiple PHP remote file inclusion vulnerabilities in sPHPell 1.01 allow remote attackers to execute arbitrary PHP code via a URL in the SpellIncPath parameter to (1) spellcheckpageinc.php, (2) spellchecktext.php, (3) spellcheckwindow.php, or (4)… | EXPLOIT ✓MEDIUM 6.8EPSS 66.2% | 3 July 2007 |
| CVE-2007-3493 | A certain ActiveX control in NCTWavChunksEditor2.dll 2.6.1.148 in NCTAudioStudio (NCTAudioStudio2) 2.7, as used by Sienzo DMM and probably other products, allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument… | EXPLOIT ✓HIGH 7.5EPSS 31.3% | 29 June 2007 |
| CVE-2007-3490 | Unspecified vulnerability in Microsoft Excel 2003 SP2 allows remote attackers to have an unknown impact via unspecified vectors, possibly related to the sheet name, as demonstrated by 2670.xls. | EXPLOIT ✓HIGH 7.5EPSS 36.6% | 29 June 2007 |
| CVE-2007-3488 | Heap-based buffer overflow in the viewer ActiveX control in Sony Network Camera SNC-RZ25N before 1.30; SNC-P1 and SNC-P5 before 1.29; SNC-CS10 and SNC-CS11 before 1.06; SNC-DF40N and SNC-DF70N before 1.18; SNC-RZ50N and SNC-CS50N before 2.22; SNC-DF85N,… | EXPLOIT ✓HIGH 10.0EPSS 16.2% | 29 June 2007 |
| CVE-2007-3481 | Cross-domain vulnerability in Microsoft Internet Explorer 6 and 7 allows remote attackers to bypass the Same Origin Policy and access restricted information from other domains via JavaScript that overwrites the document variable and statically sets the… | MEDIUM 5.0EPSS 15.8% | 28 June 2007 |
| CVE-2007-3473 | The gdImageCreateXbm function in the GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denial of service (crash) via unspecified vectors involving a gdImageCreate failure. | EXPLOIT ✓MEDIUM 4.3EPSS 13.3% | 28 June 2007 |
| CVE-2007-1863 | cache_util.c in the mod_cache module in Apache HTTP Server (httpd), when caching is enabled and a threaded Multi-Processing Module (MPM) is used, allows remote attackers to cause a denial of service (child processing handler crash) via a request with… | MEDIUM 5.0EPSS 11.8% | 27 June 2007 |
| CVE-2006-7210 | Microsoft Windows 2000, XP, and Server 2003 allows remote attackers to cause a denial of service (cpu consumption) via a PNG image with crafted (1) Width and (2) Height values in the IHDR block. | EXPLOIT ×3 ✓MEDIUM 5.0EPSS 25.1% | 27 June 2007 |
| CVE-2006-5752 | Cross-site scripting (XSS) vulnerability in mod_status.c in the mod_status module in Apache HTTP Server (httpd), when ExtendedStatus is enabled and a public server-status page is used, allows remote attackers to inject arbitrary web script or HTML via… | MEDIUM 4.3EPSS 27.8% | 27 June 2007 |
| CVE-2007-3436 | Microsoft MSN Messenger 4.7 on Windows XP allows remote attackers to cause a denial of service (resource consumption) via a flood of SIP INVITE requests to the port specified for voice conversation. | MEDIUM 5.0EPSS 12.7% | 27 June 2007 |
| CVE-2007-3435 | Stack-based buffer overflow in the BeginPrint method in a certain ActiveX control in RKD Software (barcodetools.com) BarCodeAx.dll 4.9 allows remote attackers to execute arbitrary code via a long argument. | EXPLOIT ×2 ✓HIGH 9.3EPSS 35.4% | 27 June 2007 |
| CVE-2007-3431 | PHP remote file inclusion vulnerability in cal.func.php in Valerio Capello Dagger - The Cutting Edge r23jan2007 allows remote attackers to execute arbitrary PHP code via a URL in the dir_edge_lang parameter. | EXPLOIT ✓MEDIUM 6.8EPSS 70.7% | 27 June 2007 |
| CVE-2007-3410 | Stack-based buffer overflow in the SmilTimeValue::parseWallClockValue function in smlprstime.cpp in RealNetworks RealPlayer 10, 10.1, and possibly 10.5, RealOne Player, RealPlayer Enterprise, and Helix Player 10.5-GOLD and 10.0.5 through 10.0.8, allows… | EXPLOIT ✓HIGH 9.3EPSS 36.1% | 26 June 2007 |
| CVE-2007-2442 | The gssrpc__svcauth_gssapi function in the RPC library in MIT Kerberos 5 (krb5) 1.6.1 and earlier might allow remote attackers to execute arbitrary code via a zero-length RPC credential, which causes kadmind to free an uninitialized pointer during… | HIGH 10.0EPSS 11.4% | 26 June 2007 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.