CVE-2002-1335

Cross-site scripting (XSS) vulnerability in w3m 0.3.2 does not escape an HTML tag in a frame, which allows remote attackers to insert arbitrary web script or HTML and access files or cookies.

Date published : 2002-12-03

http://www.securityfocus.com/bid/6793

http://mi.med.tohoku.ac.jp/%7Esatodai/w3m-dev-en/200211.month/838.html