Security Advisory

CVE-1999-1549

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2001-09-12 04:00:00
Last updated 2024-08-01 17:18:07
Assigner mitre
State PUBLISHED

Description

Lynx 2.x does not properly distinguish between internal and external HTML, which may allow a local attacker to read a "secure" hidden form value from a temporary file and craft a LYNXOPTIONS: URL that causes Lynx to modify the users configuration file and execute commands.