Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-29170

Опубликовано: 08 июн. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 6.1

Описание

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listing FTP directory contents either via forward or reverse proxy configuration. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

РелизСтатусПримечание
devel

pending

2.4.68-1ubuntu2
esm-infra-legacy/trusty

released

2.4.7-1ubuntu4.22+esm15
esm-infra-legacy/xenial

released

2.4.18-2ubuntu3.17+esm20
esm-infra/bionic

released

2.4.29-1ubuntu4.27+esm11
esm-infra/focal

released

2.4.41-4ubuntu3.23+esm6
jammy

released

2.4.52-1ubuntu4.23
noble

released

2.4.58-1ubuntu8.15
questing

ignored

end of life, was needs-triage
resolute

released

2.4.66-2ubuntu2.4
upstream

released

2.4.68

Показывать по

EPSS

Процентиль: 41%
0.00523
Низкий

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.4
redhat
около 2 месяцев назад

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listing FTP directory contents either via forward or reverse proxy configuration. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

CVSS3: 6.1
nvd
около 2 месяцев назад

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listing FTP directory contents either via forward or reverse proxy configuration. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

msrc
около 1 месяца назад

Apache HTTP Server: mod_proxy_ftp XSS

CVSS3: 6.1
debian
около 2 месяцев назад

A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML di ...

CVSS3: 6.1
redos
4 дня назад

Уязвимость httpd

EPSS

Процентиль: 41%
0.00523
Низкий

6.1 Medium

CVSS3