Argument injection vulnerability in Opera before 7.50 does not properly filter "-" characters that begin a hostname in a telnet URI, which allows remote attackers to insert options to the resulting command line and overwrite arbitrary files via (1) the "-f" option on Windows XP or (2) the "-n" option on Linux.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2004-05-20T04:00:00
Updated: 2024-08-08T00:17:15.126Z
Reserved: 2004-05-13T00:00:00
Link: CVE-2004-0473

No data.

Status : Modified
Published: 2004-07-07T04:00:00.000
Modified: 2024-11-20T23:48:39.600
Link: CVE-2004-0473

No data.