CVE-2007-4575

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
06/12/2007
Last modified:
09/04/2025

Description

HSQLDB before 1.8.0.9, as used in OpenOffice.org (OOo) 2 before 2.3.1, allows user-assisted remote attackers to execute arbitrary Java code via crafted database documents, related to "exposing static java methods."

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:openoffice:openoffice:*:*:*:*:*:*:*:* 2.3 (including)
cpe:2.3:a:openoffice:openoffice:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice:2.0.3:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice:2.0.3_1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice:2.0.4:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice:2.0beta:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice:2.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice:2.2:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice:2.2.1:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools