w3m kayıtları
w3m üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %80
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Saldırı profili
Tüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
38İzleyin | CVE-2006-6772İstismar yok | Format string vulnerability in the inputAnswer function in file.c in w3m before 0.5.2, when run with the dump or backend option, allows remow3m · w3m · CWE-134 | Kritik9,3 | — | %4,8 | 27 Ara 2006 |
34İzleyin | CVE-2001-0700Kavram kanıtı | Buffer overflow in w3m 0.2.1 and earlier allows a remote attacker to execute arbitrary code via a long base64 encoded MIME header.w3m · w3m | Yüksek7,5 | — | %12,6 | 20 Eyl 2001 |
27İzleyin | CVE-2010-2074İstismar yok | istream.c in w3m 0.5.2 and possibly other versions, when ssl_verify_server is enabled, does not properly handle a '\0' character in a domainw3m · w3m · CWE-20 | Orta6,8 | — | %1,5 | 16 Haz 2010 |
21İzleyin | CVE-2002-1348İstismar yok | w3m before 0.3.2.2 does not properly escape HTML tags in the ALT attribute of an IMG tag, which could allow remote attackers to access filesw3m · w3m | Orta5,0 | — | %2,0 | 19 Şub 2003 |
18İzleyin | CVE-2002-1335İstismar yok | Cross-site scripting (XSS) vulnerability in w3m 0.3.2 does not escape an HTML tag in a frame, which allows remote attackers to insert arbitrw3m · w3m | Orta4,3 | — | %2,5 | 11 Ara 2002 |
- CVE-2006-677238İzleyin
Format string vulnerability in the inputAnswer function in file.c in w3m before 0.5.2, when run with the dump or backend option, allows remo
KritikCVSS 9,3İstismar yokEPSS %5w3m · w3m27 Ara 2006
- CVE-2001-070034İzleyin
Buffer overflow in w3m 0.2.1 and earlier allows a remote attacker to execute arbitrary code via a long base64 encoded MIME header.
YüksekCVSS 7,5Kavram kanıtıEPSS %13w3m · w3m20 Eyl 2001
- CVE-2010-207427İzleyin
istream.c in w3m 0.5.2 and possibly other versions, when ssl_verify_server is enabled, does not properly handle a '\0' character in a domain
OrtaCVSS 6,8İstismar yokEPSS %1w3m · w3m16 Haz 2010
- CVE-2002-134821İzleyin
w3m before 0.3.2.2 does not properly escape HTML tags in the ALT attribute of an IMG tag, which could allow remote attackers to access files
OrtaCVSS 5,0İstismar yokEPSS %2w3m · w3m19 Şub 2003
- CVE-2002-133518İzleyin
Cross-site scripting (XSS) vulnerability in w3m 0.3.2 does not escape an HTML tag in a frame, which allows remote attackers to insert arbitr
OrtaCVSS 4,3İstismar yokEPSS %2w3m · w3m11 Ara 2002