CVE-2003-0041
Severity CVSS v4.0:
Pending analysis
Type:
CWE-78
OS Command Injections
Publication date:
19/02/2003
Last modified:
03/04/2025
Description
Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe (|) character in a filename that is retrieved by the client.
Impact
Base Score 2.0
10.00
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:mit:kerberos_ftp_client:*:*:*:*:*:*:*:* | ||
| cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:redhat:linux:7.0:*:*:*:*:*:*:* | ||
| cpe:2.3:o:redhat:linux:7.1:*:*:*:*:*:*:* | ||
| cpe:2.3:o:redhat:linux:7.2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:redhat:linux:7.3:*:*:*:*:*:*:* | ||
| cpe:2.3:o:redhat:linux:8.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:mandrakesoft:mandrake_multi_network_firewall:8.2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:mandrakesoft:mandrake_linux:8.1:*:*:*:*:*:*:* | ||
| cpe:2.3:o:mandrakesoft:mandrake_linux:8.2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:mandrakesoft:mandrake_linux:9.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0047.html
- http://secunia.com/advisories/7979
- http://secunia.com/advisories/8114
- http://www.mandriva.com/security/advisories?name=MDKSA-2003%3A021
- http://www.redhat.com/support/errata/RHSA-2003-020.html
- http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0047.html
- http://secunia.com/advisories/7979
- http://secunia.com/advisories/8114
- http://www.mandriva.com/security/advisories?name=MDKSA-2003%3A021
- http://www.redhat.com/support/errata/RHSA-2003-020.html



