Links web browser 1.00pre12 and Elinks 0.9.2 with smbclient installed allows remote attackers to execute arbitrary code via shell metacharacters in an smb:// URI, as demonstrated by using PUT and GET statements.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Elinks | Elinks | 0.9.2 (including) | 0.9.2 (including) |
Links | Links | 1.00pre12 (including) | 1.00pre12 (including) |