vendor:
Wget
by:
Unknown
6.5
CVSS
MEDIUM
Cookie Injection
20
CWE
Product Name: Wget
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: YES
Related CWE: CVE-2018-0494
CPE: cpe:2.3:a:gnu:wget:*:*:*:*:*:*:*:*
Metasploit:
https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/oracle_linux-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/redhat_linux-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/centos_linux-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/amazon_linux-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp2-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/alpine-linux-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp3-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/ubuntu-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/oracle-solaris-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/amazon-linux-ami-2-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/debian-cve-2018-0494/, https://www.rapid7.com/db/vulnerabilities/freebsd-cve-2018-0494/
Platforms Tested:
2018
GNU Wget Cookie Injection [CVE-2018-0494]
GNU Wget is susceptible to a malicious web server injecting arbitrary cookies to the cookie jar file. Normally a website should not be able to set cookies for other domains. Due to insufficient input validation GNU Wget can be tricked into storing arbitrary cookie values to the cookie jar file, bypassing this security restriction. An external attacker is able to inject arbitrary cookie values cookie jar file, adding new or replacing existing cookie values.
Mitigation:
Upgrade to the latest version of GNU Wget to fix this vulnerability.