CVE Vulnerabilities

CVE-2002-1344

Published: Dec 18, 2002 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Directory traversal vulnerability in wget before 1.8.2-4 allows a remote FTP server to create or overwrite files as the wget user via filenames containing (1) /absolute/path or (2) .. (dot dot) sequences.

Affected Software

NameVendorStart VersionEnd Version
WgetGnu1.5.3 (including)1.5.3 (including)
WgetGnu1.6 (including)1.6 (including)
WgetGnu1.7 (including)1.7 (including)
WgetGnu1.7.1 (including)1.7.1 (including)
WgetGnu1.8 (including)1.8 (including)
WgetGnu1.8.1 (including)1.8.1 (including)
WgetGnu1.8.2 (including)1.8.2 (including)
Cobalt_raq_xtrSun**
Red Hat Enterprise Linux AS (Advanced Server) version 2.1RedHat*
Red Hat Linux 6.2RedHat*
Red Hat Linux 7.0RedHat*
Red Hat Linux 7.1RedHat*
Red Hat Linux 7.2RedHat*
Red Hat Linux 7.3RedHat*
Red Hat Linux 8.0RedHat*
Red Hat Linux Advanced Workstation 2.1RedHat*

References