Vulnerabilities > Midnight Commander > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2001-11-12 | CVE-2001-1429 | Denial-Of-Service vulnerability in Midnight Commander Midnight Commander 4.5.1 Buffer overflow in mcedit in Midnight Commander 4.5.1 allows local users to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted text file. | 4.6 |
2001-01-09 | CVE-2000-1109 | Unspecified vulnerability in Midnight Commander Midnight Commander Midnight Commander (mc) 4.5.51 and earlier does not properly process malformed directory names when a user opens a directory, which allows other local users to gain privileges by creating directories that contain special characters followed by the commands to be executed. | 4.6 |
2001-01-09 | CVE-2000-1108 | Unspecified vulnerability in Midnight Commander Midnight Commander 4.5.42 cons.saver in Midnight Commander (mc) 4.5.42 and earlier does not properly verify if an output file descriptor is a TTY, which allows local users to corrupt files by creating a symbolic link to the target file, calling mc, and specifying that link as a TTY argument. | 4.6 |
1999-08-01 | CVE-1999-1337 | Unspecified vulnerability in Midnight Commander Midnight Commander FTP client in Midnight Commander (mc) before 4.5.11 stores usernames and passwords for visited sites in plaintext in the world-readable history file, which allows other local users to gain privileges. | 4.6 |