Smsd in SMS Server Tools (SMStools) before 1.4.8 allows remote attackers to execute arbitrary commands via shell metacharacters (backquotes) in message text, as described with the term "string format vulnerability" by some sources.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/4268 | Patch Vendor Advisory |
http://www.iss.net/security_center/static/8433.php | Vendor Advisory |
http://www.isis.de/members/~s.frings/smstools/history.html | |
http://archives.neohapsis.com/archives/bugtraq/2002-03/0103.html |
Configurations
Configuration 1 (hide)
|
Information
Published : 2002-07-25 21:00
Updated : 2008-09-05 13:28
NVD link : CVE-2002-0437
Mitre link : CVE-2002-0437
JSON object : View
CWE
Products Affected
stefan_frings
- sms_server_tools