CVE-1999-1337
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/08/1999
Last modified:
03/04/2025
Description
FTP client in Midnight Commander (mc) before 4.5.11 stores usernames and passwords for visited sites in plaintext in the world-readable history file, which allows other local users to gain privileges.
Impact
Base Score 2.0
4.60
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:midnight_commander:midnight_commander:*:*:*:*:*:*:*:* | 4.5.11 (including) |
To consult the complete list of CPE names with products and versions, see this page