Certain BSD-based Telnet clients, including those used on Solaris and SuSE Linux, allow remote malicious Telnet servers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command.
References
Information
Published : 2005-06-13 21:00
Updated : 2020-01-21 07:45
NVD link : CVE-2005-0488
Mitre link : CVE-2005-0488
JSON object : View
CWE
Products Affected
microsoft
- telnet_client
mit
- kerberos_5
sun
- sunos