CVE-2002-1898

Apple Terminal < 1.3.1 - OS Command Injection

Title source: rule
STIX 2.1

Description

Terminal 1.3 in Apple Mac OS X 10.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a telnet:// link, which is executed by Terminal.app window.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Taiyo Fujii · textlocalosx
https://www.exploit-db.com/exploits/21815

References (4)

Core 4
Core References
Mailing List, Patch, Vendor Advisory vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2002/Sep/msg00001.html
Broken Link, Exploit, Patch, Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/5768
Broken Link, Patch vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/10156.php

Scores

EPSS 0.0593
EPSS Percentile 90.7%

Details

CWE
CWE-78
Status published
Products (1)
apple/terminal < 1.3.1
Published Dec 31, 2002
Tracked Since Feb 18, 2026