Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2007-5795

The hack-local-variables function in Emacs before 22.2, when enable-local-variables is set to :safe, does not properly search lists of unsafe or risky variables, which might allow user-assisted attackers to bypass intended restrictions and modify critical program variables via a file containing a Local variables declaration.

  • Published: Nov 2, 2007
  • Updated: Apr 13, 2023
  • CVE: CVE-2007-5795
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.3
  • AV:L/AC:M/Au:N/C:N/I:C/A:C

No CWE or OWASP classifications available.