CVE-2004-2014

Wget 1.9-1.9.1 - Local Privilege Escalation

Title source: llm

Description

Wget 1.9 and 1.9.1 allows local users to overwrite arbitrary files via a symlink attack on the name of the file being downloaded.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Hugo Vazquez · bashlocallinux
https://www.exploit-db.com/exploits/24123

Scores

EPSS 0.0017
EPSS Percentile 37.8%

Details

Status published
Products (9)
gnu/wget 1.5.3
gnu/wget 1.6
gnu/wget 1.7
gnu/wget 1.7.1
gnu/wget 1.8
gnu/wget 1.8.1
gnu/wget 1.8.2
gnu/wget 1.9
gnu/wget 1.9.1
Published Dec 31, 2004
Tracked Since Feb 18, 2026