Enscript 1.6.3 does not sanitize filenames, which allows remote attackers or local users to execute arbitrary commands via crafted filenames.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2005-01-21 05:00
Updated : 2018-10-19 15:30
NVD link : CVE-2004-1185
Mitre link : CVE-2004-1185
CVE.ORG link : CVE-2004-1185
JSON object : View
Products Affected
gnu
- enscript
CWE