SecureCRT 4.0, 4.1, and possibly other versions, allows remote attackers to execute arbitrary commands via a telnet:// URL that uses the /F option to specify a configuration file on a samba share.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Securecrt | Van_dyke_technologies | 4.0.1 | 4.0.1 |
Securecrt | Van_dyke_technologies | 4.1.3 | 4.1.3 |
Securecrt | Van_dyke_technologies | 4.1.4 | 4.1.4 |
Securecrt | Van_dyke_technologies | 4.1.6 | 4.1.6 |
Securecrt | Van_dyke_technologies | 4.0.2 | 4.0.2 |
Securecrt | Van_dyke_technologies | 4.1.1 | 4.1.1 |
Securecrt | Van_dyke_technologies | 4.1.2 | 4.1.2 |
Securecrt | Van_dyke_technologies | 4.1.7 | 4.1.7 |
Securecrt | Van_dyke_technologies | 4.0.5 | 4.0.5 |
Securecrt | Van_dyke_technologies | 4.1.5 | 4.1.5 |
Securecrt | Van_dyke_technologies | 4.1 | 4.1 |
Securecrt | Van_dyke_technologies | 4.0.4 | 4.0.4 |
Securecrt | Van_dyke_technologies | 4.1.8 | 4.1.8 |
Securecrt | Van_dyke_technologies | 4.0.3 | 4.0.3 |