CVE Vulnerabilities

CVE-2005-2968

Published: Sep 20, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Firefox 1.0.6 and Mozilla 1.7.10 allows attackers to execute arbitrary commands via shell metacharacters in a URL that is provided to the browser on the command line, which is sent unfiltered to bash.

Affected Software

NameVendorStart VersionEnd Version
FirefoxMozilla1.0.6 (including)1.0.6 (including)
MozillaMozilla1.7.10 (including)1.7.10 (including)
Red Hat Enterprise Linux 4RedHatfirefox-0:1.0.7-1.4.1*
Red Hat Enterprise Linux 4RedHatthunderbird-0:1.0.7-1.4.1*
FirefoxUbuntudapper*
FirefoxUbuntudevel*
FirefoxUbuntuedgy*
FirefoxUbuntufeisty*
MozillaUbuntudapper*
MozillaUbuntuedgy*

References