Certain Perl scripts in Konversation 0.15 allow remote attackers to execute arbitrary commands via shell metacharacters in (1) channel names or (2) song names that are not properly quoted when the user runs IRC scripts.
References
Configurations
History
20 Nov 2024, 23:54
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.grok.org.uk/pipermail/full-disclosure/2005-January/031033.html - | |
References | () http://marc.info/?l=bugtraq&m=110626383310742&w=2 - | |
References | () http://secunia.com/advisories/13919 - | |
References | () http://secunia.com/advisories/13989 - | |
References | () http://securitytracker.com/id?1012972 - | |
References | () http://www.gentoo.org/security/en/glsa/glsa-200501-34.xml - | |
References | () http://www.kde.org/info/security/advisory-20050121-1.txt - | |
References | () http://www.securityfocus.com/bid/12312 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/19008 - |
Information
Published : 2005-04-14 04:00
Updated : 2024-11-20 23:54
NVD link : CVE-2005-0130
Mitre link : CVE-2005-0130
CVE.ORG link : CVE-2005-0130
JSON object : View
Products Affected
berlios
- konversation
CWE