automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the names of files that are to be downloaded.
References
Configurations
History
20 Nov 2024, 23:30
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=89042322924057&w=2 - | |
References | () http://www.iss.net/security_center/static/7240.php - | |
References | () http://www.osvdb.org/6111 - | |
References | () http://www.redhat.com/support/errata/rh50-errata-general.html#ncftp - |
Information
Published : 1999-12-31 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-1999-1333
Mitre link : CVE-1999-1333
CVE.ORG link : CVE-1999-1333
JSON object : View
Products Affected
redhat
- linux
CWE