CVE-2004-1185

Enscript 1.6.3 does not sanitize filenames, which allows remote attackers or local users to execute arbitrary commands via crafted filenames.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gnu:enscript:1.3.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:enscript:1.4.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:enscript:1.5.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:enscript:1.6.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:enscript:1.6.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:enscript:1.6.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:enscript:1.6.3:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-01-21 05:00

Updated : 2023-12-10 10:28


NVD link : CVE-2004-1185

Mitre link : CVE-2004-1185

CVE.ORG link : CVE-2004-1185


JSON object : View

Products Affected

gnu

  • enscript