|
|
WGet NLST Client Side File Overwriting Vulnerability
|
Bugtraq ID:
|
6352
|
|
Class:
|
Input Validation Error
|
|
CVE:
|
CAN-2002-1344
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Dec 10 2002 12:00AM
|
|
Updated:
|
Dec 10 2002 12:00AM
|
|
Credit:
|
Vulnerability discovery credited to Steve Christey.
|
|
Vulnerable:
|
Sun Cobalt RaQ XTR
GNU wget 1.8.2
+
Conectiva Linux 8.0
+
Conectiva Linux 7.0
+
Conectiva Linux 6.0
+
Immunix Immunix OS 7+
+
MandrakeSoft Corporate Server 2.1 x86_64
+
MandrakeSoft Corporate Server 2.1
+
MandrakeSoft Linux Mandrake 9.0
+
MandrakeSoft Linux Mandrake 8.2 ppc
+
MandrakeSoft Linux Mandrake 8.2
+
MandrakeSoft Linux Mandrake 8.1 ia64
+
MandrakeSoft Linux Mandrake 8.1
+
MandrakeSoft Linux Mandrake 8.0 ppc
+
MandrakeSoft Linux Mandrake 8.0
+
MandrakeSoft Linux Mandrake 7.2
+
MandrakeSoft Single Network Firewall 7.2
+
RedHat Linux 8.0 i386
+
RedHat Linux 7.3 i386
+
RedHat Linux 7.2 ia64
+
RedHat Linux 7.2 i386
+
RedHat Linux 7.1 ia64
+
RedHat Linux 7.1 i386
+
RedHat Linux 7.0 i386
+
RedHat Linux 6.2 i386
+
S.u.S.E. Linux 8.1
+
S.u.S.E. Linux 8.0 i386
+
S.u.S.E. Linux 8.0
+
S.u.S.E. Linux Personal 9.3
+
S.u.S.E. Linux Personal 9.2 x86_64
+
S.u.S.E. Linux Personal 9.2
+
S.u.S.E. Linux Personal 9.1 x86_64
+
S.u.S.E. Linux Personal 9.1
+
S.u.S.E. Linux Personal 9.0 x86_64
+
S.u.S.E. Linux Personal 9.0
+
S.u.S.E. Linux Personal 8.2
+
Trustix Secure Linux 1.5
GNU wget 1.8.1
+
Debian Linux 3.0 sparc
+
Debian Linux 3.0 s/390
+
Debian Linux 3.0 ppc
+
Debian Linux 3.0 mipsel
+
Debian Linux 3.0 mips
+
Debian Linux 3.0 m68k
+
Debian Linux 3.0 ia-64
+
Debian Linux 3.0 ia-32
+
Debian Linux 3.0 hppa
+
Debian Linux 3.0 arm
+
Debian Linux 3.0 alpha
GNU wget 1.8
GNU wget 1.7.1
GNU wget 1.7
GNU wget 1.6
GNU wget 1.5.3
+
Debian Linux 2.2 sparc
+
Debian Linux 2.2 powerpc
+
Debian Linux 2.2 IA-32
+
Debian Linux 2.2 arm
+
Debian Linux 2.2 alpha
+
Debian Linux 2.2 68k
|
|
|
|
Not Vulnerable:
|
|
|

|