CVE-1999-0097

HP-UX - Remote Command Execution via FTP Client Shell Metacharacter Injection

Title source: llm
STIX 2.1

Description

The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).

References (1)

Core 1
Core References
Third Party Advisory, VDB Entry x_refsource_misc
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0097

Scores

EPSS 0.0108
EPSS Percentile 78.0%

Details

Status published
Products (39)
hp/hp-ux 9.00
hp/hp-ux 9.01
hp/hp-ux 9.03
hp/hp-ux 9.04
hp/hp-ux 9.05
hp/hp-ux 9.06
hp/hp-ux 9.07
hp/hp-ux 9.08
hp/hp-ux 9.09
hp/hp-ux 9.10
... and 29 more
Published Oct 29, 1997
Tracked Since Feb 18, 2026