← All CVEs

CVE-2004-1488

medium · 5

wget 1.8.x and 1.9.x does not filter or quote control characters when displaying HTTP responses to the terminal, which may allow remote malicious web servers to inject terminal escape sequences and execute arbitrary code.

5
CVSS
11.9%
EPSS (exploit prob.)
96th
EPSS percentile
2005-04-27
Published

AV:N/AC:L/Au:N/C:N/I:P/A:N

Affected products

VendorProductAffected versions
gnuwget1.8
gnuwget1.8.1
gnuwget1.8.2
gnuwget1.9
gnuwget1.9.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2004-1488