CVE-2004-1175
EPSS 0.95%Published: 4/14/2005Modified: 4/28/2026
Description
fish.c in midnight commander allows remote attackers to execute arbitrary programs via "insecure filename quoting," possibly using shell metacharacters.
Affected packages (1)
- Debian/mcfrom 0, < 1:4.6.0-4.6.1-pre3-1