CVE-2005-4699
N/A
N/A
Summary
Argument injection vulnerability in TellMe 1.2 and earlier allows remote attackers to modify command line arguments for the Whois program and obtain sensitive information via "–" style options in the q_Host parameter.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22522
- http://archives.neohapsis.com/archives/fulldisclosure/2005-10/0107.html
- http://kimihia.org.nz/projects/tellme/files/tellme-1.2-1.3.diff
- http://exploitlabs.com/files/advisories/EXPL-A-2005-015-tellme.txt
- http://secunia.com/advisories/17078
- http://www.osvdb.org/19871
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22522
- http://archives.neohapsis.com/archives/fulldisclosure/2005-10/0107.html
- http://kimihia.org.nz/projects/tellme/files/tellme-1.2-1.3.diff
- http://exploitlabs.com/files/advisories/EXPL-A-2005-015-tellme.txt
- http://secunia.com/advisories/17078
- http://www.osvdb.org/19871
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.