Computer Security
[EN] securityvulns.ru
no-pyccku



Apache mod_perl crossite scripting
updated since 13.04.2009
Published:16.04.2009
Source:BUGTRAQ
SecurityVulns ID:9829
Type:remote
Level:5/10
Description:perl-status crossite scripting.
Affected:APACHE : mod_perl 2.0
 APACHE : mod_perl 1.3
CVE:CVE-2009-0796 (Cross-site scripting (XSS) vulnerability in Status.pm in Apache::Status and Apache2::Status in mod_perl1 and mod_perl2 for the Apache HTTP Server, when /perl-status is accessible, allows remote attackers to inject arbitrary web script or HTML via the URI.)
Original documentdocumentantonia.goodwin_(at)_procheckup.com, XSS with mod_perl perl_status utility (16.04.2009)
 documentMANDRIVA, [ MDVSA-2009:091 ] mod_perl (13.04.2009)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru