← All CVEs

CVE-2007-4575

high · 9.3

HSQLDB before 1.8.0.9, as used in OpenOffice.org (OOo) 2 before 2.3.1, allows user-assisted remote attackers to execute arbitrary Java code via crafted database documents, related to "exposing static java methods."

9.3
CVSS
14.3%
EPSS (exploit prob.)
96th
EPSS percentile
2007-12-06
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

CWE-94

Affected products

VendorProductAffected versions
openofficeopenoffice<= 2.3
openofficeopenoffice2.0.1
openofficeopenoffice2.0.2
openofficeopenoffice2.0.3
openofficeopenoffice2.0.3_1
openofficeopenoffice2.0.4
openofficeopenoffice2.0beta
openofficeopenoffice2.1
openofficeopenoffice2.2
openofficeopenoffice2.2.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2007-4575