perlpodder before 0.5 allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast, which are executed when saving the URL to a log file. NOTE: the wget vector is already covered by CVE-2006-2548.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-05-23 03:06
Updated : 2018-10-18 09:40
NVD link : CVE-2006-2550
Mitre link : CVE-2006-2550
JSON object : View
CWE
Products Affected
perlpodder
- perlpodder