Unrated severityNVD Advisory· Published Apr 27, 2005· Updated Apr 16, 2026
CVE-2004-1487
CVE-2004-1487
Description
wget 1.8.x and 1.9.x allows a remote malicious web server to overwrite certain files via a redirection URL containing a ".." that resolves to the IP address of the malicious server, which bypasses wget's filtering for ".." sequences.
Affected products
5Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- bugs.debian.org/cgi-bin/bugreport.cginvdExploitVendor Advisory
- www.securityfocus.com/bid/11871nvdExploitVendor Advisory
- marc.infonvd
- securitytracker.com/idnvd
- www.redhat.com/support/errata/RHSA-2005-771.htmlnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/18420nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11682nvd
- usn.ubuntu.com/145-1/nvd
News mentions
0No linked articles in our index yet.