CVE-2003-0041

Severity
10.0CRITICAL
EPSS
1.2%
top 20.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 19
Latest updateApr 29

Description

Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe (|) character in a filename that is retrieved by the client.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages3 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-8wgq-vhc2-3cqc: Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe (|) character in a filename that is retrieved by the client2022-04-29
CVEList
CVE-2003-0041: Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe (|) character in a filename that is retrieved by the client2003-02-01

📋Vendor Advisories

2
Red Hat
security flaw2003-01-31
Debian
CVE-2003-0041: krb5 - Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe...2003

💬Community

1
Bugzilla
CVE-2003-0041 security flaw2018-08-16