Pine 4.x allows a remote malicious user to execute arbitrary commands via an index.html file which executes lynx and obtains a uudecoded file from a malicious web server, which is then executed by Pine.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
university of washington pine 4.2 |
||
university of washington pine 4.0 |
||
university of washington pine 3.98 |
||
university of washington pine 4.10 |