Skip to main content

Vendor/product archive

elinks / elinks CVEs

Beta · best-effort

7 CVEs tagged to elinks / elinks0 Critical, 2 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2012-4545

Published Jan 3, 2013

The http_negotiate_create_context function in protocol/http/http_negotiate.c in ELinks 0.12 before 0.12pre6, when using HTTP Negotiate or GSS-Negotiate authentication, delegates u…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-7224

Published Sep 14, 2009

Buffer overflow in entity_cache in ELinks before 0.11.4rc0 allows remote attackers to cause a denial of service (crash) via a crafted link.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2007-5034

Published Sep 21, 2007

ELinks before 0.11.3, when sending a POST request for an https URL, appends the body and content headers of the POST request to the CONNECT request in cleartext, which allows remo…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2027

Published Apr 13, 2007

Untrusted search path vulnerability in the add_filename_to_string function in intl/gettext/loadmsgcat.c for Elinks 0.11.1 allows local users to cause Elinks to use an untrusted ge…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5925

Published Nov 15, 2006

Links web browser 1.00pre12 and Elinks 0.9.2 with smbclient installed allows remote attackers to execute arbitrary code via shell metacharacters in an smb:// URI, as demonstrated…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1