Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2007-0507

SQL injection vulnerability in the Acidfree module for Drupal before 4.6.x-1.0, and before 4.7.x-1.0 in the 4.7 series, allows remote authenticated users with "create acidfree albums" privileges to execute arbitrary SQL commands via node titles.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.6%
CVSS Severity
CVSS v2 Score 6.0
Products affected by CVE-2007-0507
  • Drupal » Acidfree » Version: 4.6_1.0
    cpe:2.3:a:drupal:acidfree:4.6_1.0
  • Drupal » Acidfree » Version: 4.7_1.0
    cpe:2.3:a:drupal:acidfree:4.7_1.0


Contact Us

Shodan ® - All rights reserved