Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Borland Software

First CVE: Nov 14, 2000Active for: 26 yearsTotal CVEs: 14
52.8
VTI Score
TOP TARGET

Borland Software's vulnerability profile centers on a focused set of development tools and database products spanning Delphi, C++ Builder, and InterBase, which occupy a notable presence among legacy enterprise and embedded systems. The recurring exposure involves memory-safety issues and buffer-boundary weaknesses characteristic of native-code development platforms and embedded database engines, and public exploit code has frequently become available for vulnerabilities in this vendor's products. Current severity, exploitation activity, and CVE counts are shown alongside this summary.

FAUCET AI Generated
14
Total CVEs
More Total CVEs than 94% of tracked vendors
0.2
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 2% of tracked vendors
6.7
Avg CVSS Score
Higher Avg CVSS Score than 44% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Borland Software over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 14, 2000
25 years ago
Most Recent CVE
Oct 6, 2007
6,866 days ago

Products(9 total)

Top CVEs

Signals from CVEs in this vendor scope (14 CVEs).

14 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2007-3566HIGH
Stack-based buffer overflow in the database service (ibserver.exe) in Borland InterBase 2007 before SP2 allows remote attackers to execute arbitrary code via a long size value in a
Jul 26, 20077.572NOYES
CVE-2007-5243HIGH
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0.257, allow remote attackers to execute arbitrary code via (
Oct 6, 20079.369NOYES
CVE-2004-0204HIGH
Directory traversal vulnerability in the web viewers for Business Objects Crystal Reports 9 and 10, and Crystal Enterprise 9 or 10, as used in Visual Studio .NET 2003 and Outlook 2
Aug 6, 20047.568NOYES
CVE-2007-5244HIGH
Stack-based buffer overflow in Borland InterBase LI 8.0.0.53 through 8.1.0.253 on Linux, and possibly unspecified versions on Solaris, allows remote attackers to execute arbitrary
Oct 6, 20079.362NOYES
CVE-2001-0008HIGH
Backdoor account in Interbase database server allows remote attackers to overwrite arbitrary files using stored procedures.
Feb 12, 200110.044NOYES
CVE-2004-2043MEDIUM
Buffer overflow in ibserver for Firebird Database 1.0 and other versions before 1.5, and possibly other products that use the InterBase codebase, allows remote attackers to cause a
May 1, 20045.027NOYES
CVE-2002-1514HIGH
gds_lock_mgr in Borland InterBase allows local users to overwrite files and gain privileges via a symlink attack on a "isc_init1.X" temporary file, as demonstrated by modifying the
Apr 2, 20037.227NOYES
CVE-2004-2121MEDIUM
Multiple directory traversal vulnerabilities in Borland Web Server (BWS) 1.0b3 and earlier allow remote attackers to read and download arbitrary files via (1) multi-dot "......" se
Dec 31, 20045.023NOYES
CVE-2002-2087MEDIUM
Buffer overflow in Borland InterBase 6.0 allows local users to execute arbitrary code via a long INTERBASE environment variable when calling (1) gds_drop, (2) gds_lock_mgr, or (3)
Dec 31, 20024.621NOYES
CVE-2006-6201HIGH
Heap-based buffer overflow in Borland idsql32.dll 5.1.0.4, as used by RevilloC MailServer; 5.2.0.2 as used by Borland Developer Studio 2006; and possibly other versions allows remo
Dec 1, 20067.520NONO
View all 14 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products14 CVEs
29%
64%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown14 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown14 (100.0%)
User Interaction
None0 (0.0%)
Unknown14 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown14 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (14 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
21.4% of CVEs· 99th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
9 CVEs
64.3% of CVEs· 84th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Borland Software.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Borland Software — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Borland Software's Products

View all 1 CNAs →

Top CWEs