{"api_version":"1","generated_at":"2026-07-24T18:45:17+00:00","cve":"CVE-2005-1738","urls":{"html":"https://cve.report/CVE-2005-1738","api":"https://cve.report/api/cve/CVE-2005-1738.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-1738","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-1738"},"summary":{"title":"CVE-2005-1738","description":"Format string vulnerability in the logPrintBadfile function in delbadfiles.c Iron Bars SHell (ibsh) before 0.3d allows users to \"access files outside the home directory\" and possibly execute arbitrary code via certain inputs that are not properly handled in a syslog call.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-05-24 04:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"10","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://secunia.com/advisories/15473","name":"http://secunia.com/advisories/15473","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Secunia - Advisories - Iron Bars SHell Format String Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://sourceforge.net/project/shownotes.php?release_id=329340","name":"http://sourceforge.net/project/shownotes.php?release_id=329340","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"Page not found\n    - SourceForge.net","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"http://www.securityfocus.com/bid/13720","name":"http://www.securityfocus.com/bid/13720","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"Iron Bars SHell Local Format String Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-1738","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-1738","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"1738","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"iron_bars_shell","cpe5":"iron_bars_shell","cpe6":"0.3a","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"1738","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"iron_bars_shell","cpe5":"iron_bars_shell","cpe6":"0.3b","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"1738","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"iron_bars_shell","cpe5":"iron_bars_shell","cpe6":"0.3c","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T21:59:24.248Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"13720","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/13720"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://sourceforge.net/project/shownotes.php?release_id=329340"},{"name":"15473","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15473"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2005-05-24T00:00:00.000Z","descriptions":[{"lang":"en","value":"Format string vulnerability in the logPrintBadfile function in delbadfiles.c Iron Bars SHell (ibsh) before 0.3d allows users to \"access files outside the home directory\" and possibly execute arbitrary code via certain inputs that are not properly handled in a syslog call."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2005-06-02T09:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"13720","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/13720"},{"tags":["x_refsource_CONFIRM"],"url":"http://sourceforge.net/project/shownotes.php?release_id=329340"},{"name":"15473","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15473"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2005-1738","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Format string vulnerability in the logPrintBadfile function in delbadfiles.c Iron Bars SHell (ibsh) before 0.3d allows users to \"access files outside the home directory\" and possibly execute arbitrary code via certain inputs that are not properly handled in a syslog call."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"13720","refsource":"BID","url":"http://www.securityfocus.com/bid/13720"},{"name":"http://sourceforge.net/project/shownotes.php?release_id=329340","refsource":"CONFIRM","url":"http://sourceforge.net/project/shownotes.php?release_id=329340"},{"name":"15473","refsource":"SECUNIA","url":"http://secunia.com/advisories/15473"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2005-1738","datePublished":"2005-05-24T04:00:00.000Z","dateReserved":"2005-05-24T00:00:00.000Z","dateUpdated":"2024-08-07T21:59:24.248Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-05-24 04:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:iron_bars_shell:iron_bars_shell:0.3a:*:*:*:*:*:*:*","matchCriteriaId":"24242D6A-941E-4E0C-A750-70914C477D8C"},{"vulnerable":true,"criteria":"cpe:2.3:a:iron_bars_shell:iron_bars_shell:0.3b:*:*:*:*:*:*:*","matchCriteriaId":"6FDAC396-66E7-471E-B04D-554DCC738519"},{"vulnerable":true,"criteria":"cpe:2.3:a:iron_bars_shell:iron_bars_shell:0.3c:*:*:*:*:*:*:*","matchCriteriaId":"E4B785B4-EA51-4A6F-9B63-3819566C5109"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"1738","Ordinal":"1","Title":"CVE-2005-1738","CVE":"CVE-2005-1738","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"1738","Ordinal":"1","NoteData":"Format string vulnerability in the logPrintBadfile function in delbadfiles.c Iron Bars SHell (ibsh) before 0.3d allows users to \"access files outside the home directory\" and possibly execute arbitrary code via certain inputs that are not properly handled in a syslog call.","Type":"Description","Title":"CVE-2005-1738"},{"CveYear":"2005","CveId":"1738","Ordinal":"2","NoteData":"2005-05-24","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"1738","Ordinal":"3","NoteData":"2005-06-02","Type":"Other","Title":"Modified"}]}}}