Xdg-utils 1.0.2 and earlier allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in a URL argument to (1) xdg-open or (2) xdg-email.
References
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2008-02-04 23:00
Updated : 2024-02-04 17:13
NVD link : CVE-2008-0386
Mitre link : CVE-2008-0386
CVE.ORG link : CVE-2008-0386
JSON object : View
Products Affected
gentoo
- xdg-utils
mandrakesoft
- mandrake_linux
CWE
CWE-20
Improper Input Validation