Software
less
Aggregate across all detected versions
Total Hosts
0
distinct hosts
Versions Seen
0
Countries
0
Known CVEs
5
known CVEs
Top Countries
No geolocated hosts.
Top ASNs
No attributed hosts.
CVE Matches
| CVE | CVSS | Severity | Summary |
|---|---|---|---|
| CVE-2014-9488 | 10.0 | HIGH | The is_utf8_well_formed function in GNU less before 475 allows remote attackers to have unspecified impact via malformed UTF-8 characters, which triggers an out... |
| CVE-2024-32487 | 8.6 | N/A | less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically... |
| CVE-2022-48624 | 7.8 | N/A | close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE. |
| CVE-2022-46663 | 7.5 | N/A | In GNU Less before 609, crafted data can result in "less -R" not filtering ANSI escape sequences sent to the terminal. |
| CVE-2004-2264 | 6.4 | MEDIUM | Format string bug in the open_altfile function in filename.c for GNU less 382, 381, and 358 might allow local users to cause a denial of service or possibly exe... |