CVE-2004-1488
medium · 5wget 1.8.x and 1.9.x does not filter or quote control characters when displaying HTTP responses to the terminal, which may allow remote malicious web servers to inject terminal escape sequences and execute arbitrary code.
5
CVSS
11.9%
EPSS (exploit prob.)
96th
EPSS percentile
2005-04-27
Published
AV:N/AC:L/Au:N/C:N/I:P/A:N
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| gnu | wget | 1.8 |
| gnu | wget | 1.8.1 |
| gnu | wget | 1.8.2 |
| gnu | wget | 1.9 |
| gnu | wget | 1.9.1 |
Check a specific version with /api/v1/cve/match.
References
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=261755
- http://marc.info/?l=bugtraq&m=110269474112384&w=2
- http://secunia.com/advisories/20960
- http://securitytracker.com/id?1012472
- http://www.novell.com/linux/security/advisories/2006_16_sr.html
- http://www.redhat.com/support/errata/RHSA-2005-771.html
- http://www.securityfocus.com/bid/11871
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18421
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9750
- https://usn.ubuntu.com/145-1/
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=261755
- http://marc.info/?l=bugtraq&m=110269474112384&w=2
- http://secunia.com/advisories/20960
- http://securitytracker.com/id?1012472
- http://www.novell.com/linux/security/advisories/2006_16_sr.html
- http://www.redhat.com/support/errata/RHSA-2005-771.html
- http://www.securityfocus.com/bid/11871
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18421
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9750
- https://usn.ubuntu.com/145-1/
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2004-1488