CVE-2007-0227
Last modified
CVE-2007-0227 is a vulnerability of currently unknown severity. slocate 3.1 does not properly manage database entries that specify names of files in protected directories, which allows local users to obtain the names of private files. NOTE: another researcher reports that the issue is not present in slocate 2.7.. EPSS estimates a 1.67% chance of exploitation in the next 30 days.
Description
slocate 3.1 does not properly manage database entries that specify names of files in protected directories, which allows local users to obtain the names of private files. NOTE: another researcher reports that the issue is not present in slocate 2.7.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Slocate | Slocate | 3.1 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-0227?
How severe is CVE-2007-0227?
How do I fix CVE-2007-0227?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2007
- CVE-2007-0221Integer overflow in the IMAP (IMAP4) support in Microsoft Ex…
- CVE-2007-0222Directory traversal vulnerability in the EmChartBean server …
- CVE-2007-0223SQL injection vulnerability in shared/code/cp_functions_down…
- CVE-2007-0224SQL injection vulnerability in shopgiftregsearch.asp in VP-A…
- CVE-2007-0225Cross-site scripting (XSS) vulnerability in shopcustadmin.as…
- CVE-2007-0226SQL injection vulnerability in wbsearch.aspx in uniForum 4 a…
- CVE-2007-0228The DataCollector service in EIQ Networks Network Security A…
- CVE-2007-0229Integer overflow in the ffs_mountfs function in Mac OS X 10.…
- CVE-2007-0230PHP remote file inclusion vulnerability in install.php in CS…
- CVE-2007-0231Cross-site scripting (XSS) vulnerability in Movable Type (MT…
- CVE-2007-0232PHP remote file inclusion vulnerability in routines/fieldVal…
- CVE-2007-0233wp-trackback.php in WordPress 2.0.6 and earlier does not pro…
Are you affected by CVE-2007-0227?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
