CVE Vulnerabilities

CVE-2005-2968

Published: Sep 20, 2005 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Firefox 1.0.6 and Mozilla 1.7.10 allows attackers to execute arbitrary commands via shell metacharacters in a URL that is provided to the browser on the command line, which is sent unfiltered to bash.

Affected Software

Name Vendor Start Version End Version
Firefox Mozilla 1.0.6 (including) 1.0.6 (including)
Mozilla Mozilla 1.7.10 (including) 1.7.10 (including)
Red Hat Enterprise Linux 4 RedHat firefox-0:1.0.7-1.4.1 *
Red Hat Enterprise Linux 4 RedHat thunderbird-0:1.0.7-1.4.1 *
Firefox Ubuntu dapper *
Firefox Ubuntu devel *
Firefox Ubuntu edgy *
Firefox Ubuntu feisty *
Mozilla Ubuntu dapper *
Mozilla Ubuntu edgy *

References