CVE-2003-0041

MIT Kerberos FTP Client - OS Command Injection

Title source: rule

Description

Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe (|) character in a filename that is retrieved by the client.

Scores

EPSS 0.0123
EPSS Percentile 78.9%

Classification

CWE
CWE-78
Status draft

Affected Products (11)

mit/kerberos_ftp_client
redhat/linux
redhat/linux
redhat/linux
redhat/linux
redhat/linux
redhat/linux
mandrakesoft/mandrake_multi_network_firewall
mandrakesoft/mandrake_linux
mandrakesoft/mandrake_linux
mandrakesoft/mandrake_linux

Timeline

Published Feb 19, 2003
Tracked Since Feb 18, 2026