CVE-2001-0439
published 2001-07-02CVE-2001-0439: licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
PriorityP433high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
2.40%
82.3th percentile
licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| conectiva | linux | — | — |
| conectiva | linux | — | — |
| conectiva | linux | — | — |
| conectiva | linux | — | — |
| conectiva | linux | — | — |
| freebsd | freebsd | — | — |
| freebsd | freebsd | — | — |
| licq | licq | <= 1.0.2 | — |
| mandrakesoft | mandrake_linux | — | — |
| mandrakesoft | mandrake_linux | — | — |
| mandrakesoft | mandrake_linux_corporate_server | — | — |
| redhat | linux | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
security flaw
vendor_redhat·2001-04-20·CVSS 7.5
CVE-2001-0439 [HIGH] security flaw
security flaw
licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
GHSA
GHSA-8wfc-6m4r-hvmp: licq before 1
ghsa_unreviewed·2022-04-30
CVE-2001-0439 [HIGH] GHSA-8wfc-6m4r-hvmp: licq before 1
licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
No detection rules found.
No public exploits indexed.
arXiv
Integrating Network and Attack Graphs for Service-Centric Impact Analysis
arxiv_fulltext·2026-02-11
Integrating Network and Attack Graphs for Service-Centric Impact Analysis
Integrating Network and Attack Graphs for Service-Centric Impact Analysis
Joni Herttuainene1
Vesa Kuikka
Kimmo K. Kaski
e1e-mail: [email protected]
Department of Computer Science, Aalto University School of Science,
P.O. Box 11000, 00076 Aalto, Finland
Received: date / Accepted: date
## Abstract
We present a novel methodology for modelling, visualising, and analysing cyber threats, attack paths, as well as their impact on user services in enterprise or infrastructure networks of digital devices and services they provide. Using probabilistic methods to track the propagation of an attack through attack graphs, via the service or application layers, and on physical communication networks, our model enables us to analyse cyber attacks at different levels of detail. Understanding
Bugzilla
CVE-2001-0439 security flaw
bugzilla·2018-08-16·CVSS 7.5
CVE-2001-0439 [HIGH] CVE-2001-0439 security flaw
CVE-2001-0439 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
http://archives.neohapsis.com/archives/freebsd/2001-04/0607.htmlhttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000389http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-032.php3http://www.osvdb.org/5641http://www.redhat.com/support/errata/RHSA-2001-022.htmlhttp://www.redhat.com/support/errata/RHSA-2001-023.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/6261http://archives.neohapsis.com/archives/freebsd/2001-04/0607.htmlhttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000389http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-032.php3http://www.osvdb.org/5641http://www.redhat.com/support/errata/RHSA-2001-022.htmlhttp://www.redhat.com/support/errata/RHSA-2001-023.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/6261
2001-07-02
Published