University Of Kansas Lynx vulnerabilities

5 known vulnerabilities affecting university_of_kansas/lynx.

Total CVEs
5
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM2LOW1

Vulnerabilities

Page 1 of 1
CVE-2005-2929HIGHCVSS 7.5v2.8.5v2.8.6+1 more2005-11-18
CVE-2005-2929 [HIGH] CWE-264 CVE-2005-2929: Lynx 2.8.5, and other versions before 2.8.6dev.15, allows remote attackers to execute arbitrary comm Lynx 2.8.5, and other versions before 2.8.6dev.15, allows remote attackers to execute arbitrary commands via (1) lynxcgi:, (2) lynxexec, and (3) lynxprog links, which are not properly restricted in the default configuration in some environments.
nvd
CVE-2004-1617MEDIUMCVSS 5.0v2.7v2.8+14 more2004-10-18
CVE-2004-1617 [MEDIUM] CWE-20 CVE-2004-1617: Lynx, lynx-ssl, and lynx-cur before 2.8.6dev.8 allow remote attackers to cause a denial of service ( Lynx, lynx-ssl, and lynx-cur before 2.8.6dev.8 allow remote attackers to cause a denial of service (infinite loop) via a web page or HTML email that contains invalid HTML including (1) a TEXTAREA tag with a large COLS value and (2) a large tag name in an element that is not terminated, as demonstrated by mangleme. NOTE: a followup suggests that the rel
nvdosv
CVE-2002-1405MEDIUMCVSS 5.0PoCv2.8.2_rel1v2.8.3+4 more2003-02-19
CVE-2002-1405 [MEDIUM] CVE-2002-1405: CRLF injection vulnerability in Lynx 2.8.4 and earlier allows remote attackers to inject false HTTP CRLF injection vulnerability in Lynx 2.8.4 and earlier allows remote attackers to inject false HTTP headers into an HTTP request that is provided on the command line, via a URL containing encoded carriage return, line feed, and other whitespace characters.
nvdosv
CVE-2000-0209HIGHCVSS 7.6v2.7v2.8+1 more2000-02-27
CVE-2000-0209 [HIGH] CVE-2000-0209: Buffer overflow in Lynx 2.x allows remote attackers to crash Lynx and possibly execute commands via Buffer overflow in Lynx 2.x allows remote attackers to crash Lynx and possibly execute commands via a long URL in a malicious web page.
nvd
CVE-1999-0371LOWCVSS 1.2≤ 2.7.11999-02-11
CVE-1999-0371 [LOW] CVE-1999-0371: Lynx allows a local user to overwrite sensitive files through /tmp symlinks. Lynx allows a local user to overwrite sensitive files through /tmp symlinks.
nvd