CVE
- Id
- 8901
- CVE No.
- CVE-2004-0473
- Status
- Candidate
- Description
- Argument injection vulnerability in Opera before 7.50 does not properly filter "-" characters that begin a hostname in a telnet URI, which allows remote attackers to insert options to the resulting command line and overwrite arbitrary files via (1) the "-f" option on Windows XP or (2) the "-n" option on Linux.
- Phase
- Assigned (20040513)
- Votes
- None (candidate not yet proposed)
- Comments