VYPR
Unrated severityNVD Advisory· Published Feb 20, 2007· Updated Apr 23, 2026

CVE-2007-0007

CVE-2007-0007

Description

gnucash 2.0.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on the (1) gnucash.trace, (2) qof.trace, and (3) qof.trace.[PID] temporary files.

Affected products

1
  • cpe:2.3:a:gnucash:gnucash:*:*:*:*:*:*:*:*
    Range: <=2.0.4

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

10

News mentions

0

No linked articles in our index yet.