Midnight Commander

Midnight Commander

21 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.29%
  • Published 14.04.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service (infinite loop) via unknown attack vectors.

  • EPSS 0.95%
  • Published 14.04.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Multiple format string vulnerabilities in Midnight Commander (mc) 4.5.55 and earlier allow remote attackers to have an unknown impact.

  • EPSS 1.03%
  • Published 18.08.2004 04:00:00
  • Last modified 03.04.2025 01:03:51

Multiple format string vulnerabilities in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or execute arbitrary code.

  • EPSS 0.09%
  • Published 18.08.2004 04:00:00
  • Last modified 03.04.2025 01:03:51

Multiple vulnerabilities in Midnight Commander (mc) before 4.6.0, with unknown impact, related to "Insecure temporary file and directory creations."

  • EPSS 1.18%
  • Published 18.08.2004 04:00:00
  • Last modified 03.04.2025 01:03:51

Multiple buffer overflows in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or execute arbitrary code.

  • EPSS 8.28%
  • Published 20.01.2004 05:00:00
  • Last modified 03.04.2025 01:03:51

Stack-based buffer overflow in vfs_s_resolve_symlink of vfs/direntry.c for Midnight Commander (mc) 4.6.0 and earlier, and possibly later versions, allows remote attackers to execute arbitrary code during symlink conversion.

  • EPSS 0.07%
  • Published 12.11.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in mcedit in Midnight Commander 4.5.1 allows local users to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted text file.

  • EPSS 0.08%
  • Published 09.01.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

Midnight Commander (mc) 4.5.51 and earlier does not properly process malformed directory names when a user opens a directory, which allows other local users to gain privileges by creating directories that contain special characters followed by the co...

Exploit
  • EPSS 0.08%
  • Published 09.01.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

cons.saver in Midnight Commander (mc) 4.5.42 and earlier does not properly verify if an output file descriptor is a TTY, which allows local users to corrupt files by creating a symbolic link to the target file, calling mc, and specifying that link as...

  • EPSS 0.08%
  • Published 01.08.1999 04:00:00
  • Last modified 03.04.2025 01:03:51

FTP client in Midnight Commander (mc) before 4.5.11 stores usernames and passwords for visited sites in plaintext in the world-readable history file, which allows other local users to gain privileges.