Vulnerability Name: | CVE-2004-0473 (CCN-16139) | ||||||||
Assigned: | 2004-05-12 | ||||||||
Published: | 2004-05-12 | ||||||||
Updated: | 2022-02-28 | ||||||||
Summary: | Argument injection vulnerability in Opera before 7.50 does not properly filter "-" characters that begin a hostname in a telnet URI, which allows remote attackers to insert options to the resulting command line and overwrite arbitrary files via (1) the "-f" option on Windows XP or (2) the "-n" option on Linux. | ||||||||
CVSS v3 Severity: | 3.7 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)
| ||||||||
CVSS v2 Severity: | 2.6 Low (CVSS v2 Vector: AV:N/AC:H/Au:N/C:N/I:P/A:N)
| ||||||||
Vulnerability Type: | CWE-88 | ||||||||
Vulnerability Consequences: | File Manipulation | ||||||||
References: | Source: MITRE Type: CNA CVE-2004-0473 Source: GENTOO Type: Third Party Advisory GLSA-200405-19 Source: CCN Type: SECTRACK ID: 1010142 Opera Telnet URL Processing Flaw Lets Remote Users Create or Overwrite Files Source: SECTRACK Type: Broken Link, Third Party Advisory, VDB Entry 1010142 Source: CCN Type: GLSA-200405-19 Opera telnet URI handler file creation/truncation vulnerability Source: IDEFENSE Type: Broken Link 20040512 Opera Telnet URI Handler File Creation/Truncation Vulnerability Source: CCN Type: iDEFENSE Security Advisory 05.12.04 Opera Telnet URI Handler File Creation/Truncation Vulnerability Source: CCN Type: Opera Web site Opera Internet Browser Source: CONFIRM Type: Broken Link http://www.opera.com/linux/changelogs/750/index.dml Source: BID Type: Broken Link, Third Party Advisory, VDB Entry 10341 Source: CCN Type: BID-10341 Multiple Vendor URI Protocol Handler Arbitrary File Creation/Modification Vulnerability Source: XF Type: Third Party Advisory, VDB Entry opera-telnet-file-overwrite(16139) Source: XF Type: UNKNOWN opera-telnet-file-overwrite(16139) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |