Lynx Project Lynx 2.8

CPE Details

Lynx Project Lynx 2.8
2.8
2024-05-30
14h36 +00:00
2024-05-30
14h36 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:lynx_project:lynx:2.8:*:*:*:*:*:*:*

Informations

Vendor

lynx_project

Product

lynx

Version

2.8

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-38165 2021-08-07 15h33 +00:00 Lynx through 2.8.9 mishandles the userinfo subcomponent of a URI, which allows remote attackers to discover cleartext credentials because they may appear in SNI data.
5.3
Medium
CVE-1999-1549 2001-09-12 02h00 +00:00 Lynx 2.x does not properly distinguish between internal and external HTML, which may allow a local attacker to read a "secure" hidden form value from a temporary file and craft a LYNXOPTIONS: URL that causes Lynx to modify the user's configuration file and execute commands.
7.8
High