Smsd in SMS Server Tools (SMStools) before 1.4.8 allows remote attackers to execute arbitrary commands via shell metacharacters (backquotes) in message text, as described with the term "string format vulnerability" by some sources.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2002-03/0103.html | |
http://www.isis.de/members/~s.frings/smstools/history.html | |
http://www.iss.net/security_center/static/8433.php | Vendor Advisory |
http://www.securityfocus.com/bid/4268 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2002-07-26 04:00
Updated : 2024-02-28 10:24
NVD link : CVE-2002-0437
Mitre link : CVE-2002-0437
CVE.ORG link : CVE-2002-0437
JSON object : View
Products Affected
stefan_frings
- sms_server_tools
CWE