CVE-2002-1898: OS Command Injection
Published Dec 31, 2002
·Updated
Terminal 1.3 in Apple Mac OS X 10.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a telnet:// link, which is executed by Terminal.app window.
Affected Software
2 affected components
Apple iOS and macOS=10.2
Apple Terminal<1.3.1
Remediation
Patch Available
Patch Available
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityWeaknessAffected Software
Jun 28, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1898?
CVE-2002-1898 is considered a critical vulnerability due to its ability to allow remote command execution.
2
How do I fix CVE-2002-1898?
To fix CVE-2002-1898, update to a version of Apple Terminal later than 1.3.1 or apply relevant patches from Apple.
3
What is the impact of CVE-2002-1898?
The impact of CVE-2002-1898 includes unauthorized remote access and execution of arbitrary commands on vulnerable systems.
4
Which operating system is affected by CVE-2002-1898?
CVE-2002-1898 affects Apple Mac OS X version 10.2.
5
Is CVE-2002-1898 exploitable?
Yes, CVE-2002-1898 is exploitable by remote attackers through crafted telnet links.