Lynx 2.8.5, and other versions before 2.8.6dev.15, allows remote attackers to execute arbitrary commands via (1) lynxcgi:, (2) lynxexec, and (3) lynxprog links, which are not properly restricted in the default configuration in some environments.
                
            References
                    Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2005-11-18 06:03
Updated : 2025-04-03 01:03
NVD link : CVE-2005-2929
Mitre link : CVE-2005-2929
CVE.ORG link : CVE-2005-2929
JSON object : View
Products Affected
                university_of_kansas
- lynx
CWE
                
                    
                        
                        CWE-264
                        
            Permissions, Privileges, and Access Controls
