This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor w3m First view 2003-02-19
Product w3m Last view 2003-02-19
Version 0.3.2.1 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:w3m:w3m

Activity : Overall

Related : CVE

  Date Alert Description
5 2003-02-19 CVE-2002-1348

w3m before 0.3.2.2 does not properly escape HTML tags in the ALT attribute of an IMG tag, which could allow remote attackers to access files or cookies.

Open Source Vulnerability Database (OSVDB)

id Description
14526 w3m IMG Tag ALT Attribute HTML Tags XSS

OpenVAS Exploits

id Description
2008-01-17 Name : Debian Security Advisory DSA 249-1 (w3mmee)
File : nvt/deb_249_1.nasl
2008-01-17 Name : Debian Security Advisory DSA 250-1 (w3mmee-ssl)
File : nvt/deb_250_1.nasl
2008-01-17 Name : Debian Security Advisory DSA 251-1 (w3m, w3m-ssl)
File : nvt/deb_251_1.nasl

Nessus® Vulnerability Scanner

id Description
2004-09-29 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-249.nasl - Type: ACT_GATHER_INFO
2004-09-29 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-250.nasl - Type: ACT_GATHER_INFO
2004-09-29 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-251.nasl - Type: ACT_GATHER_INFO
2004-07-06 Name: The remote Red Hat host is missing a security update.
File: redhat-RHSA-2003-045.nasl - Type: ACT_GATHER_INFO