Page 23 of 221 results (0.006 seconds)

CVSS: 7.5EPSS: 46%CPEs: 1EXPL: 0

20 May 2004 — Argument injection vulnerability in Opera before 7.50 does not properly filter "-" characters that begin a hostname in a telnet URI, which allows remote attackers to insert options to the resulting command line and overwrite arbitrary files via (1) the "-f" option on Windows XP or (2) the "-n" option on Linux. El navegador Web Opera no filtra adecuadamente caractéres "-" en el comienzo de un nombre de máquina en una URI telnet, lo que permite a atacantes remotos insertar opciones en la linea de comandos res... • http://security.gentoo.org/glsa/glsa-200405-19.xml • CWE-88: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') •