Unrated severityNVD Advisory· Published Aug 1, 1999· Updated Apr 16, 2026
CVE-1999-1337
CVE-1999-1337
Description
FTP client in Midnight Commander (mc) before 4.5.11 stores usernames and passwords for visited sites in plaintext in the world-readable history file, which allows other local users to gain privileges.
Affected products
1- cpe:2.3:a:midnight_commander:midnight_commander:*:*:*:*:*:*:*:*Range: <=4.5.11
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.