Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2007-0247

31
FAUCET Score

CVE-2007-0247 describes a denial-of-service vulnerability in Squid versions prior to 2.6.STABLE7, specifically within the ftp.c component. Remote FTP servers can trigger a core dump by sending specially crafted directory listing responses, impacting the availability of the Squid proxy. With a CVSS score of 5.0 and an AV:N/AC:L/Au:N/C:N/I:N/A:P vector, this vulnerability is easily exploitable over the network without authentication, leading to a complete denial of service. While not on the KEV catalog and with no active exploitation reported, an exploit for this vulnerability is publicly available on ExploitDB, indicating a potential for attack. Community discussion and media coverage for this CVE are minimal.

Impacted Technologies

VendorProductVersion(s)CPE
2.6.stable1CPE matchmatch criteria
cpe:2.3:a:squid:squid:2.6.stable1:*:*:*:*:*:*:*
2.6.stable2CPE matchmatch criteria
cpe:2.3:a:squid:squid:2.6.stable2:*:*:*:*:*:*:*
2.6.stable3CPE matchmatch criteria
cpe:2.3:a:squid:squid:2.6.stable3:*:*:*:*:*:*:*
2.6.stable4CPE matchmatch criteria
cpe:2.3:a:squid:squid:2.6.stable4:*:*:*:*:*:*:*
2.6.stable5CPE matchmatch criteria
cpe:2.3:a:squid:squid:2.6.stable5:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

5.0MEDIUM

AV:N/AC:L/Au:N/C:N/I:N/A:P

Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
Access Vector
NETWORK
Access Complexity
LOW
Authentication
NONE
Exploitability Score
10.0
Impact Score
2.9
CvssVersion
2.0

Exploit Intelligence

EPSS Score
19.09%
Probability of exploitation in next 30 days
EPSS Percentile
97.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
ExploitDB: EDB-29473 · Jan 16, 2007
This CVE's current EPSS score of 0.1909 is in the 97th percentile among its peer group of 23,723 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2007-0247Important

CVE-2007-0247 Squid crashes when receiving certain FTP listings

Jan 13, 2007

References

fedoranews.org / cms/node/2442
osvdb.org / 39839
secunia.com / advisories/23767
Vendor Advisory
secunia.com / advisories/23805
Vendor Advisory
secunia.com / advisories/23810
Vendor Advisory
secunia.com / advisories/23837
Vendor Advisory
secunia.com / advisories/23889
Vendor Advisory
secunia.com / advisories/23921
Vendor Advisory
secunia.com / advisories/23946
Vendor Advisory
exchange.xforce.ibmcloud.com / vulnerabilities/31523
gentoo.org / security/en/glsa/glsa-200701-22.xml
mandriva.com / security/advisories
novell.com / linux/security/advisories/2007_12_squid.html
securityfocus.com / bid/22079
squid-cache.org / bugs/show_bug.cgi
squid-cache.org / Versions/v2/2.6/squid-2.6.STABLE7-RELEASENOTES.html
trustix.org / errata/2007/0003
ubuntu.com / usn/usn-414-1
vupen.com / english/advisories/2007/0199
Vendor Advisory