First published: Sat Jan 02 1999(Updated: )
wget 1.5.3 follows symlinks to change permissions of the target file instead of the symlink itself.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wget | =1.5.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0402 is considered a moderate severity vulnerability due to its potential for privilege escalation.
To fix CVE-1999-0402, upgrade GNU Wget to a version later than 1.5.3 that does not exhibit this vulnerability.
CVE-1999-0402 specifically affects GNU Wget version 1.5.3.
CVE-1999-0402 can be exploited through symbolic link manipulation to change file permissions.
While CVE-1999-0402 is an older vulnerability, it remains relevant for systems still running outdated versions of GNU Wget.