PT-2005-1139 · Gnu+1 · Wget+1
Jan Minar
·
Publicado
2005-02-15
·
Atualizado
2018-10-03
·
CVE-2004-1488
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
wget versions 1.8.x through 1.9.x
Description
The issue allows remote malicious web servers to inject terminal escape sequences and potentially execute arbitrary code by not filtering or quoting control characters when displaying HTTP responses to the terminal.
Recommendations
For versions 1.8.x through 1.9.x, update to a version that properly filters or quotes control characters in HTTP responses to prevent the injection of terminal escape sequences.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Red Hat
Wget