CVE-2004-1948

Source
https://nvd.nist.gov/vuln/detail/CVE-2004-1948
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2004-1948.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2004-1948
Downstream
Published
2004-04-20T04:00:00Z
Modified
2025-08-09T20:01:27Z
Summary
[none]
Details

NcFTP client 3.1.6 and 3.1.7, when the username and password are included in an FTP URL that is provided on the command line, allows local users to obtain sensitive information via "ps aux," which displays the URL in the process list.

References

Affected packages