w3m before 0.3.2.2 does not properly escape HTML tags in the ALT attribute of an IMG tag, which could allow remote attackers to access files or cookies.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2004-09-01T04:00:00

Updated: 2024-08-08T03:19:28.827Z

Reserved: 2002-12-10T00:00:00

Link: CVE-2002-1348

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2003-02-19T05:00:00.000

Modified: 2016-10-18T02:26:12.880

Link: CVE-2002-1348

cve-icon Redhat

Severity :

Publid Date: 2002-11-27T00:00:00Z

Links: CVE-2002-1348 - Bugzilla