Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-29170

Опубликовано: 08 июн. 2026
Источник: ubuntu
Приоритет: medium
CVSS3: 6.1

Описание

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listing FTP directory contents either via forward or reverse proxy configuration. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

РелизСтатусПримечание
devel

pending

2.4.68-1ubuntu2
esm-infra-legacy/trusty

released

2.4.7-1ubuntu4.22+esm15
esm-infra-legacy/xenial

released

2.4.18-2ubuntu3.17+esm20
esm-infra/bionic

released

2.4.29-1ubuntu4.27+esm11
esm-infra/focal

released

2.4.41-4ubuntu3.23+esm6
jammy

released

2.4.52-1ubuntu4.23
noble

released

2.4.58-1ubuntu8.15
questing

ignored

end of life, was needs-triage
resolute

released

2.4.66-2ubuntu2.4
upstream

released

2.4.68

Показывать по

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.4
redhat
3 месяца назад

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listing FTP directory contents either via forward or reverse proxy configuration. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

CVSS3: 6.1
nvd
3 месяца назад

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listing FTP directory contents either via forward or reverse proxy configuration. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

msrc
3 месяца назад

Apache HTTP Server: mod_proxy_ftp XSS

CVSS3: 6.1
debian
3 месяца назад

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML di ...

CVSS3: 6.1
redos
около 2 месяцев назад

Уязвимость httpd

6.1 Medium

CVSS3