CVE-2005-1795
The filecopy function in misc.c in Clam AntiVirus (ClamAV) before 0.85, on Mac OS, allows remote attackers to execute arbitrary code via a virus in a filename that contains shell metacharacters, which are not properly handled when HFS permissions prevent the file from being deleted and ditto is invoked.
- Affected products
- Clamav
- Clam Anti-virus Clamav
- ≤ 0.84
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 3.6% (88th percentile)
- Weakness
- CWE-20
- NVD status
- Modified
- Published
- 2005-06-01
CVE-2005-1795 at NVD
No indexed exploits for CVE-2005-1795 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2005-1795 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.