PT-1999-1872 · Washington University · Pine
Published
1999-06-28
·
Updated
2008-09-10
·
CVE-2000-0353
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Pine versions 4.x
Description:
The issue allows a remote attacker to execute arbitrary commands. This is achieved by exploiting an index.html file that executes lynx and obtains a uudecoded file from a malicious web server, which is then executed.
Recommendations:
For Pine version 4.x, update to a version that fixes this issue to prevent remote command execution.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Pine