|
|
| |
|
| |
apache-conf: cross-site scripting
| Package(s): | apache-conf |
CVE #(s): | CVE-2009-2823
|
| Created: | November 16, 2009 |
Updated: | January 7, 2010 |
| Description: |
From the Mandriva advisory:
The Apache HTTP Server enables the HTTP TRACE method per default
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via unspecified web client software (CVE-2009-2823).
|
| Alerts: |
|
( Log in to post comments)
|
|
|