| | CVE-2007-5470 | Microsoft | low | 2.1 | 1.3%
| | Microsoft Expression Media stores the catalog password in cleartext in the catalog IVC file, which a… | Oct 16, 2007 | Apr 23, 2026 |
| | CVE-2007-5460 | Microsoft | medium | 4.6 | 1.0%
| | Microsoft ActiveSync 4.1, as used in Windows Mobile 5.0, uses weak encryption (XOR obfuscation with … | Oct 15, 2007 | Apr 23, 2026 |
| | CVE-2007-5461 | Apache | low | 3.5 | 6.3%
| | Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 thro… | Oct 15, 2007 | Apr 23, 2026 |
| | CVE-2007-5456 | Microsoft | high | 7.5 | 10.6%
| | Microsoft Internet Explorer 7 and earlier allows remote attackers to bypass the "File Download - Sec… | Oct 14, 2007 | Apr 23, 2026 |
| | CVE-2007-5438 | VMware | low | 1.9 | 0.1%
| | Unspecified vulnerability in a certain ActiveX control in Reconfig.DLL in VMware Workstation 5.5.x b… | Oct 13, 2007 | Apr 23, 2026 |
| | CVE-2007-5208 | HPE | high | 7.6 | 73.7%
| | hpssd in Hewlett-Packard Linux Imaging and Printing Project (hplip) 1.x and 2.x before 2.7.10 allows… | Oct 13, 2007 | Apr 23, 2026 |
| | CVE-2007-5391 | HPE | critical | 10.0 | 4.1%
| | Unspecified vulnerability in HP Select Identity 4.01 through 4.01.010 and 4.10 through 4.13.001 allo… | Oct 12, 2007 | Apr 23, 2026 |
| | CVE-2007-5382 | Cisco | critical | 10.0 | 2.4%
| | The conversion utility for converting CiscoWorks Wireless LAN Solution Engine (WLSE) 4.1.91.0 and ea… | Oct 12, 2007 | Apr 23, 2026 |
| | CVE-2007-3896 | Microsoft | critical | 9.3 | 83.5%
| | The URL handling in Shell32.dll in the Windows shell in Microsoft Windows XP and Server 2003, with I… | Oct 11, 2007 | Apr 23, 2026 |
| | CVE-2007-3892 | Microsoft | high | 7.5 | 40.8%
| | Microsoft Internet Explorer 5.01 through 7 allows remote attackers to spoof the URL address bar and … | Oct 9, 2007 | Apr 23, 2026 |
| | CVE-2007-3893 | Microsoft | medium | 6.8 | 40.7%
| | Unspecified vulnerability in Microsoft Internet Explorer 5.01 through 7 allows remote attackers to e… | Oct 9, 2007 | Apr 23, 2026 |
| | CVE-2007-3897 | Microsoft | critical | 9.3 | 64.0%
| | Heap-based buffer overflow in Microsoft Outlook Express 6 and earlier, and Windows Mail for Vista, a… | Oct 9, 2007 | Apr 23, 2026 |
| | CVE-2007-3899 | Microsoft | critical | 9.3 | 51.5%
| | Unspecified vulnerability in Microsoft Word 2000 SP3, Word 2002 SP3, and Office 2004 for Mac allows … | Oct 9, 2007 | Apr 23, 2026 |
| | CVE-2007-5322 | Microsoft | high | 7.5 | 34.5%
| | Insecure method vulnerability in the FPOLE.OCX 6.0.8450.0 ActiveX control in Microsoft Visual FoxPro… | Oct 9, 2007 | Apr 23, 2026 |
| | CVE-2007-5277 | Microsoft | medium | 4.3 | 11.5%
| | Microsoft Internet Explorer 6 drops DNS pins based on failed connections to irrelevant TCP ports, wh… | Oct 8, 2007 | Apr 23, 2026 |
| | CVE-2007-5144 | Microsoft | medium | 4.3 | 16.3%
| | Buffer overflow in the GDI engine in Windows Live Messenger, as used for Windows MSN Live 8.1, allow… | Oct 1, 2007 | Apr 23, 2026 |
| | CVE-2007-5158 | Microsoft | medium | 4.3 | 20.6%
| | The focus handling for the onkeydown event in Microsoft Internet Explorer 6.0 allows remote attacker… | Oct 1, 2007 | Apr 23, 2026 |
| | CVE-2007-5095 | Microsoft | high | 7.5 | 32.5%
| | Microsoft Windows Media Player (WMP) 9 on Windows XP SP2 invokes Internet Explorer to render HTML do… | Sep 26, 2007 | Apr 23, 2026 |
| | CVE-2007-5090 | Microsoft | high | 7.5 | 1.0%
| | Unspecified vulnerability in IBM Rational ClearQuest (CQ), when a Microsoft SQL Server or an IBM DB2… | Sep 26, 2007 | Apr 23, 2026 |
| | CVE-2007-5085 | Apache | medium | 5.0 | 0.8%
| | Unspecified vulnerability in the management EJB (MEJB) in Apache Geronimo before 2.0.2 allows remote… | Sep 26, 2007 | Apr 23, 2026 |
| | CVE-2007-4991 | Microsoft | medium | 5.0 | 47.5%
| | The SOCKS4 Proxy in Microsoft Internet Security and Acceleration (ISA) Server 2004 SP1 and SP2 allow… | Sep 21, 2007 | Apr 23, 2026 |
| | CVE-2007-0061 | VMware | critical | 10.0 | 16.3%
| | The DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017,… | Sep 21, 2007 | Apr 23, 2026 |
| | CVE-2007-0062 | VMware | critical | 10.0 | 5.4%
| | Integer overflow in the ISC dhcpd 3.0.x before 3.0.7 and 3.1.x before 3.1.1; and the DHCP server in … | Sep 21, 2007 | Apr 23, 2026 |
| | CVE-2007-0063 | VMware | critical | 10.0 | 7.6%
| | Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x befo… | Sep 21, 2007 | Apr 23, 2026 |
| | CVE-2007-4496 | VMware | medium | 6.5 | 0.4%
| | Unspecified vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Bu… | Sep 21, 2007 | Apr 23, 2026 |
| | CVE-2007-4497 | VMware | medium | 5.5 | 0.4%
| | Unspecified vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Bu… | Sep 21, 2007 | Apr 23, 2026 |
| | CVE-2007-5023 | VMware | medium | 6.9 | 0.1%
| | Unquoted Windows search path vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.… | Sep 21, 2007 | Apr 23, 2026 |
| | CVE-2007-5025 | VMware | critical | 9.3 | 0.3%
| | Unspecified vulnerability in EMC VMware ACE before 1.0.3 Build 54075 allows attackers to have an unk… | Sep 21, 2007 | Apr 23, 2026 |
| | CVE-2007-2834 | Apache | critical | 9.3 | 14.7%
| | Integer overflow in the TIFF parser in OpenOffice.org (OOo) before 2.3; and Sun StarOffice 6, 7, and… | Sep 18, 2007 | Apr 23, 2026 |
| | CVE-2007-4931 | HPE | low | 2.1 | 0.1%
| | HP System Management Homepage (SMH) for Windows, when used in conjunction with HP Version Control Ag… | Sep 18, 2007 | Apr 23, 2026 |
| | CVE-2007-4916 | HPE | critical | 10.0 | 71.3%
| | Heap-based buffer overflow in the FileFind::FindFile method in (1) MFC42.dll, (2) MFC42u.dll, (3) MF… | Sep 17, 2007 | Apr 23, 2026 |
| | CVE-2007-4890 | Microsoft | medium | 5.8 | 26.5%
| | Absolute directory traversal vulnerability in a certain ActiveX control in the VB To VSI Support Lib… | Sep 14, 2007 | Apr 23, 2026 |
| | CVE-2007-4891 | Microsoft | medium | 6.8 | 51.7%
| | A certain ActiveX control in PDWizard.ocx 6.0.0.9782 and earlier in Microsoft Visual Studio 6.0 expo… | Sep 14, 2007 | Apr 23, 2026 |
| | CVE-2007-4465 | Apache | medium | 6.1 | 2.8%
| | Cross-site scripting (XSS) vulnerability in mod_autoindex.c in the Apache HTTP Server before 2.2.6, … | Sep 14, 2007 | Apr 23, 2026 |
| | CVE-2007-4848 | Microsoft | medium | 4.3 | 23.1%
| | Microsoft Internet Explorer 4.0 through 7 allows remote attackers to determine the existence of loca… | Sep 12, 2007 | Apr 23, 2026 |
| | CVE-2007-3036 | Microsoft | medium | 6.9 | 3.2%
| | Unspecified vulnerability in the (1) Windows Services for UNIX 3.0 and 3.5, and (2) Subsystem for UN… | Sep 12, 2007 | Apr 23, 2026 |
| | CVE-2007-4814 | Microsoft | high | 7.5 | 53.6%
| | Buffer overflow in the SQLServer ActiveX control in the Distributed Management Objects OLE DLL (sqld… | Sep 11, 2007 | Apr 23, 2026 |
| | CVE-2007-4776 | Microsoft | critical | 9.3 | 81.5%
| | Buffer overflow in Microsoft Visual Basic 6.0 and Enterprise Edition 6.0 SP6 allows user-assisted re… | Sep 10, 2007 | Apr 23, 2026 |
| | CVE-2007-4790 | Microsoft | high | 7.5 | 73.7%
| | Stack-based buffer overflow in certain ActiveX controls in (1) FPOLE.OCX 6.0.8450.0 and (2) Foxtlib.… | Sep 10, 2007 | Apr 23, 2026 |
| | CVE-2007-4746 | Cisco | critical | 9.0 | 1.9%
| | The Cisco Video Surveillance IP Gateway Encoder/Decoder (Standalone and Module) firmware 1.8.1 and e… | Sep 6, 2007 | Apr 23, 2026 |
| | CVE-2007-4747 | Cisco | critical | 10.0 | 3.3%
| | The telnet service in Cisco Video Surveillance IP Gateway Encoder/Decoder (Standalone and Module) fi… | Sep 6, 2007 | Apr 23, 2026 |
| | CVE-2007-4723 | Apache | high | 7.5 | 0.2%
| | Directory traversal vulnerability in Ragnarok Online Control Panel 4.3.4a, when the Apache HTTP Serv… | Sep 5, 2007 | Apr 23, 2026 |
| | CVE-2007-4724 | Apache | medium | 4.3 | 0.7%
| | Cross-site request forgery (CSRF) vulnerability in cal2.jsp in the calendar examples application in … | Sep 5, 2007 | Apr 23, 2026 |
| | CVE-2007-4654 | Cisco | medium | 5.0 | 0.7%
| | Unspecified vulnerability in SSHield 1.6.1 with OpenSSH 3.0.2p1 on Cisco WebNS 8.20.0.1 on Cisco Con… | Sep 4, 2007 | Apr 23, 2026 |
| | CVE-2007-4633 | Cisco | medium | 4.3 | 0.5%
| | Multiple cross-site scripting (XSS) vulnerabilities in Cisco CallManager and Unified Communications … | Aug 31, 2007 | Apr 23, 2026 |
| | CVE-2007-4634 | Cisco | critical | 9.3 | 1.6%
| | Multiple SQL injection vulnerabilities in Cisco CallManager and Unified Communications Manager (CUCM… | Aug 31, 2007 | Apr 23, 2026 |
| | CVE-2007-2931 | Microsoft | critical | 9.3 | 61.7%
| | Heap-based buffer overflow in Microsoft MSN Messenger 6.2, 7.0, and 7.5, and Live Messenger 8.0 allo… | Aug 31, 2007 | Apr 23, 2026 |
| | CVE-2007-4593 | VMware | medium | 6.9 | 0.0%
| | Unspecified vulnerability in vstor2-ws60.sys in VMWare Workstation 6.0 allows local users to cause a… | Aug 29, 2007 | Apr 23, 2026 |
| | CVE-2007-4591 | VMware | medium | 6.9 | 0.0%
| | vstor-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (host opera… | Aug 29, 2007 | Apr 23, 2026 |
| | CVE-2007-4590 | HPE | low | 3.3 | 0.1%
| | The get_system_info command in Ignite-UX C.7.0 through C.7.3, and DynRootDisk (DRD) A.1.0.16.417 thr… | Aug 29, 2007 | Apr 23, 2026 |