CVE-2008-5282
high · 10Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0.1 allow remote attackers to execute arbitrary code via (1) a link with a long HREF attribute, and (2) a DIV tag with a long id attribute.
10
CVSS
17.6%
EPSS (exploit prob.)
97th
EPSS percentile
2008-11-29
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| w3c | amaya_web_browser | 10.0.1 |
Check a specific version with /api/v1/cve/match.
References
- http://osvdb.org/50282
- http://osvdb.org/50283
- http://secunia.com/advisories/32848
- http://securityreason.com/securityalert/4657
- http://www.bmgsec.com.au/advisory/40/
- http://www.bmgsec.com.au/advisory/41/
- http://www.securityfocus.com/archive/1/498578/100/0/threaded
- http://www.securityfocus.com/archive/1/498583/100/0/threaded
- http://www.securityfocus.com/bid/32442
- http://www.vupen.com/english/advisories/2008/3255
- http://osvdb.org/50282
- http://osvdb.org/50283
- http://secunia.com/advisories/32848
- http://securityreason.com/securityalert/4657
- http://www.bmgsec.com.au/advisory/40/
- http://www.bmgsec.com.au/advisory/41/
- http://www.securityfocus.com/archive/1/498578/100/0/threaded
- http://www.securityfocus.com/archive/1/498583/100/0/threaded
- http://www.securityfocus.com/bid/32442
- http://www.vupen.com/english/advisories/2008/3255
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2008-5282