GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted FTP resource. http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4971