CVE-2006-7234

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/10/2008
Last modified:
09/04/2025

Description

Untrusted search path vulnerability in Lynx before 2.8.6rel.4 allows local users to execute arbitrary code via malicious (1) .mailcap and (2) mime.types files in the current working directory.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:lynx:lynx:*:rel3:*:*:*:*:*:* 2.8.6 (including)
cpe:2.3:a:lynx:lynx:2.8.1:dev.1:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.10:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.11:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.12:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.13:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.14:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.15:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.16:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.17:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.18:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.19:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.2:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.20:*:*:*:*:*:*
cpe:2.3:a:lynx:lynx:2.8.1:dev.21:*:*:*:*:*:*