VYPR
Unrated severityNVD Advisory· Published Nov 18, 2005· Updated Apr 16, 2026

CVE-2005-2929

CVE-2005-2929

Description

Lynx 2.8.5, and other versions before 2.8.6dev.15, allows remote attackers to execute arbitrary commands via (1) lynxcgi:, (2) lynxexec, and (3) lynxprog links, which are not properly restricted in the default configuration in some environments.

Affected products

3
  • cpe:2.3:a:university_of_kansas:lynx:2.8.5:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:university_of_kansas:lynx:2.8.5:*:*:*:*:*:*:*
    • cpe:2.3:a:university_of_kansas:lynx:2.8.6:*:*:*:*:*:*:*
    • cpe:2.3:a:university_of_kansas:lynx:2.8.6_dev13:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

25

News mentions

0

No linked articles in our index yet.