CVE-2004-1165
KDE FTP - KIOSlave URI Arbitrary FTP Server Command Execution
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
Konqueror 3.3.1 allows remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains a URL-encoded newline ("%0a") before the FTP command, which causes the commands to be inserted into the resulting FTP session, as demonstrated using a PORT command.
KDE Security Advisory: KDE applications which use the ftp kioslave, e.g. Konqueror, allow remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains an URL-encoded newline ( %0a ) before the ftp command, which causes the commands to be inserted into the resulting FTP session. Due to similarities between the ftp and the SMTP protocol, this vulnerability allows to misuse the ftp slave to connect to a SMTP server and issue arbitrary commands, like sending an email. Systems affected: All KDE releases up to including KDE 3.3.2.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2004-12-06 First Exploit
- 2004-12-09 CVE Reserved
- 2004-12-10 CVE Published
- 2024-08-08 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (11)
URL | Tag | Source |
---|---|---|
http://marc.info/?l=bugtraq&m=110245752232681&w=2 | Mailing List | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/18384 | Vdb Entry | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9645 | Signature |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/24801 | 2004-12-06 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.debian.org/security/2005/dsa-631 | 2017-10-11 | |
http://www.gentoo.org/security/en/glsa/glsa-200501-18.xml | 2017-10-11 | |
http://www.mandriva.com/security/advisories?name=MDKSA-2005:045 | 2017-10-11 | |
http://www.redhat.com/support/errata/RHSA-2005-009.html | 2017-10-11 | |
http://www.redhat.com/support/errata/RHSA-2005-065.html | 2017-10-11 | |
https://access.redhat.com/security/cve/CVE-2004-1165 | 2005-02-15 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1617385 | 2005-02-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Kde Search vendor "Kde" | Kdelibs Search vendor "Kde" for product "Kdelibs" | 3.1 Search vendor "Kde" for product "Kdelibs" and version "3.1" | - |
Affected
| ||||||
Kde Search vendor "Kde" | Kdelibs Search vendor "Kde" for product "Kdelibs" | 3.1.1 Search vendor "Kde" for product "Kdelibs" and version "3.1.1" | - |
Affected
| ||||||
Kde Search vendor "Kde" | Kdelibs Search vendor "Kde" for product "Kdelibs" | 3.1.2 Search vendor "Kde" for product "Kdelibs" and version "3.1.2" | - |
Affected
| ||||||
Kde Search vendor "Kde" | Kdelibs Search vendor "Kde" for product "Kdelibs" | 3.1.3 Search vendor "Kde" for product "Kdelibs" and version "3.1.3" | - |
Affected
| ||||||
Kde Search vendor "Kde" | Kdelibs Search vendor "Kde" for product "Kdelibs" | 3.1.4 Search vendor "Kde" for product "Kdelibs" and version "3.1.4" | - |
Affected
| ||||||
Kde Search vendor "Kde" | Kdelibs Search vendor "Kde" for product "Kdelibs" | 3.1.5 Search vendor "Kde" for product "Kdelibs" and version "3.1.5" | - |
Affected
| ||||||
Kde Search vendor "Kde" | Kdelibs Search vendor "Kde" for product "Kdelibs" | 3.2 Search vendor "Kde" for product "Kdelibs" and version "3.2" | - |
Affected
| ||||||
Kde Search vendor "Kde" | Kdelibs Search vendor "Kde" for product "Kdelibs" | 3.2.1 Search vendor "Kde" for product "Kdelibs" and version "3.2.1" | - |
Affected
| ||||||
Kde Search vendor "Kde" | Kdelibs Search vendor "Kde" for product "Kdelibs" | 3.2.2 Search vendor "Kde" for product "Kdelibs" and version "3.2.2" | - |
Affected
| ||||||
Kde Search vendor "Kde" | Konqueror Search vendor "Kde" for product "Konqueror" | 3.3.1 Search vendor "Kde" for product "Konqueror" and version "3.3.1" | - |
Affected
|