Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2004-1175

Опубликовано: 14 апр. 2005
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

fish.c in midnight commander allows remote attackers to execute arbitrary programs via "insecure filename quoting," possibly using shell metacharacters.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:midnight_commander:midnight_commander:4.5.40:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.41:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.42:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.43:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.44:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.45:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.46:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.47:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.48:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.49:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.50:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.51:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.52:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.54:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.5.55:*:*:*:*:*:*:*
cpe:2.3:a:midnight_commander:midnight_commander:4.6:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:alpha:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:arm:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:hppa:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:ia-32:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:ia-64:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:m68k:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:mips:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:mipsel:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:ppc:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:s-390:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:sparc:*:*:*:*:*
cpe:2.3:o:gentoo:linux:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:2.1:*:advanced_server:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:2.1:*:advanced_server_ia64:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:2.1:*:workstation:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:2.1:*:workstation_ia64:*:*:*:*:*
cpe:2.3:o:redhat:linux_advanced_workstation:2.1:*:ia64:*:*:*:*:*
cpe:2.3:o:redhat:linux_advanced_workstation:2.1:*:itanium_processor:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:8.0:*:i386:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:8.1:*:*:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:8.2:*:*:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:9.0:*:x86_64:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:9.1:*:*:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:9.2:*:*:*:*:*:*:*
cpe:2.3:o:turbolinux:turbolinux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:turbolinux:turbolinux_server:8.0:*:*:*:*:*:*:*
cpe:2.3:o:turbolinux:turbolinux_workstation:7.0:*:*:*:*:*:*:*
cpe:2.3:o:turbolinux:turbolinux_workstation:8.0:*:*:*:*:*:*:*

EPSS

Процентиль: 75%
0.00949
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
больше 20 лет назад

fish.c in midnight commander allows remote attackers to execute arbitrary programs via "insecure filename quoting," possibly using shell metacharacters.

redhat
больше 20 лет назад

fish.c in midnight commander allows remote attackers to execute arbitrary programs via "insecure filename quoting," possibly using shell metacharacters.

debian
больше 20 лет назад

fish.c in midnight commander allows remote attackers to execute arbitr ...

github
больше 3 лет назад

fish.c in midnight commander allows remote attackers to execute arbitrary programs via "insecure filename quoting," possibly using shell metacharacters.

fstec
около 20 лет назад

Уязвимости операционной системы Red Hat Enterprise Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 75%
0.00949
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other