Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-29170

Опубликовано: 08 июн. 2026
Источник: nvd
CVSS3: 6.1
EPSS Низкий

Описание

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listing FTP directory contents either via forward or reverse proxy configuration.

Users are recommended to upgrade to version 2.4.68, which fixes this issue.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:*
Версия до 2.4.68 (исключая)

EPSS

Процентиль: 41%
0.00523
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
ubuntu
около 2 месяцев назад

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listing FTP directory contents either via forward or reverse proxy configuration. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

CVSS3: 5.4
redhat
около 2 месяцев назад

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listing FTP directory contents either via forward or reverse proxy configuration. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

msrc
около 1 месяца назад

Apache HTTP Server: mod_proxy_ftp XSS

CVSS3: 6.1
debian
около 2 месяцев назад

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML di ...

CVSS3: 6.1
redos
4 дня назад

Уязвимость httpd

EPSS

Процентиль: 41%
0.00523
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79