Show filters
140 Total Results
Displaying 21-30 of 140
Sort by:
Attacker Value
Unknown
CVE-2018-6197
Disclosure Date: January 25, 2018 (last updated December 30, 2023)
w3m through 0.5.3 is prone to a NULL pointer dereference flaw in formUpdateBuffer in form.c.
0
Attacker Value
Unknown
CVE-2018-6196
Disclosure Date: January 25, 2018 (last updated December 30, 2023)
w3m through 0.5.3 is prone to an infinite recursion flaw in HTMLlineproc0 because the feed_table_block_tag function in table.c does not prevent a negative indent value.
0
Attacker Value
Unknown
CVE-2017-1000501
Disclosure Date: January 03, 2018 (last updated November 26, 2024)
Awstats version 7.6 and earlier is vulnerable to a path traversal flaw in the handling of the "config" and "migrate" parameters resulting in unauthenticated remote code execution.
0
Attacker Value
Unknown
CVE-2016-9436
Disclosure Date: January 20, 2017 (last updated December 30, 2023)
parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to a <i> tag.
0
Attacker Value
Unknown
CVE-2016-9435
Disclosure Date: January 20, 2017 (last updated December 30, 2023)
The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to <dd> tags.
0
Attacker Value
Unknown
CVE-2016-9439
Disclosure Date: December 12, 2016 (last updated December 30, 2023)
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2016-9624
Disclosure Date: December 12, 2016 (last updated December 30, 2023)
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2016-9429
Disclosure Date: December 12, 2016 (last updated December 30, 2023)
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Buffer overflow in the formUpdateBuffer function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2016-9622
Disclosure Date: December 12, 2016 (last updated December 30, 2023)
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2016-9628
Disclosure Date: December 12, 2016 (last updated December 30, 2023)
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
0