Lynx 2.x does not properly distinguish between internal and external HTML, which may allow a local attacker to read a secure hidden form value from a temporary file and craft a LYNXOPTIONS: URL that causes Lynx to modify the users configuration file and execute commands.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Lynx | University_of_kansas | 2.7 | 2.7 |
Lynx | University_of_kansas | 2.8 | 2.8 |