Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
fedoraproject fedora 7 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-2575
cbrPager prior to 0.9.17 allows user-assisted remote malicious users to execute arbitrary commands via shell metacharacters in a (1) ZIP (aka .cbz) or (2) RAR (aka .cbr) archive filename.
Jcoppens Cbrpager
Fedoraproject Fedora 9
Fedoraproject Fedora 8
Fedoraproject Fedora 7
7.8
CVSSv3
CVE-2016-2334
Heap-based buffer overflow in the NArchive::NHfs::CHandler::ExtractZlibFile method in 7zip prior to 16.00 and p7zip allows remote malicious users to execute arbitrary code via a crafted HFS+ image.
7-zip 7-zip
Fedoraproject Fedora 24
Fedoraproject Fedora 23
Oracle Solaris
2 Github repositories
9.8
CVSSv3
CVE-2007-6013
Wordpress 1.5 up to and including 2.3.1 uses cookie values based on the MD5 hash of a password MD5 hash, which allows malicious users to bypass authentication by obtaining the MD5 hash from the user database, then generating the authentication cookie from that hash.
Wordpress Wordpress
Fedoraproject Fedora 8
Fedoraproject Fedora 7
7.5
CVSSv3
CVE-2023-29197
guzzlehttp/psr7 is a PSR-7 HTTP message library implementation in PHP. Affected versions are subject to improper header parsing. An attacker could sneak in a newline (\n) into both the header names and values. While the specification states that \r\n\r\n is used to terminate the ...
Guzzlephp Psr-7
Fedoraproject Fedora 37
Fedoraproject Fedora 38
2 Github repositories
NA
CVE-2008-1145
Directory traversal vulnerability in WEBrick in Ruby 1.8 prior to 1.8.5-p115 and 1.8.6-p114, and 1.9 up to and including 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote malicious users to access arbitrary f...
Ruby-lang Webrick -
Fedoraproject Fedora 8
Fedoraproject Fedora 7
1 EDB exploit
NA
CVE-2007-5593
install.php in Drupal 5.x prior to 5.3, when the configured database server is not reachable, allows remote malicious users to execute arbitrary code via vectors that cause settings.php to be modified.
Drupal Drupal
Fedoraproject Fedora 7
NA
CVE-2007-4045
The CUPS service, as used in SUSE Linux prior to 20070720 and other Linux distributions, allows remote malicious users to cause a denial of service via unspecified vectors related to an incomplete fix for CVE-2007-0720 that introduced a different denial of service problem in SSL ...
Apple Cups
Fedoraproject Fedora 7
NA
CVE-2007-5594
Drupal 5.x prior to 5.3 does not apply its Drupal Forms API protection against the user deletion form, which allows remote malicious users to delete users via a cross-site request forgery (CSRF) attack.
Drupal Drupal
Fedoraproject Fedora 7
NA
CVE-2007-4000
The kadm5_modify_policy_internal function in lib/kadm5/srv/svr_policy.c in the Kerberos administration daemon (kadmind) in MIT Kerberos 5 (krb5) 1.5 up to and including 1.6.2 does not properly check return values when the policy does not exist, which might allow remote authentica...
Mit Kerberos 5
Fedoraproject Fedora 7
NA
CVE-2015-1038
p7zip 9.20.1 allows remote malicious users to write to arbitrary files via a symlink attack in an archive.
Fedoraproject Fedora 22
Fedoraproject Fedora 23
Oracle Solaris 10.0
Oracle Solaris 11.2
7-zip P7zip 9.20.1
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4654
CVE-2023-49606
encryption
NULL pointer dereference
CVE-2024-4439
CVE-2024-4649
race condition
CVE-2024-27202
CVE-2024-34566
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »