CVE Vulnerabilities

CVE-2002-1348

Published: Feb 19, 2003 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

w3m before 0.3.2.2 does not properly escape HTML tags in the ALT attribute of an IMG tag, which could allow remote attackers to access files or cookies.

Affected Software

NameVendorStart VersionEnd Version
W3mW3m0.2 (including)0.2 (including)
W3mW3m0.2.1 (including)0.2.1 (including)
W3mW3m0.2.2 (including)0.2.2 (including)
W3mW3m0.2.3 (including)0.2.3 (including)
W3mW3m0.2.4 (including)0.2.4 (including)
W3mW3m0.2.5 (including)0.2.5 (including)
W3mW3m0.2.5.1 (including)0.2.5.1 (including)
W3mW3m0.3 (including)0.3 (including)
W3mW3m0.3.1 (including)0.3.1 (including)
W3mW3m0.3.2 (including)0.3.2 (including)
W3mW3m0.3.2.1 (including)0.3.2.1 (including)
W3mW3m0.3.2.2 (including)0.3.2.2 (including)
Red Hat Enterprise Linux AS (Advanced Server) version 2.1RedHat*
Red Hat Linux 7.0jRedHat*
Red Hat Linux 7.2RedHat*
Red Hat Linux 7.3RedHat*
Red Hat Linux 8.0RedHat*
Red Hat Linux Advanced Workstation 2.1RedHat*

References