Логотип exploitDog
bind:CVE-2009-5031
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2009-5031

Количество 4

Количество 4

ubuntu логотип

CVE-2009-5031

больше 13 лет назад

ModSecurity before 2.5.11 treats request parameter values containing single quotes as files, which allows remote attackers to bypass filtering rules and perform other attacks such as cross-site scripting (XSS) attacks via a single quote in a request parameter in the Content-Disposition field of a request with a multipart/form-data Content-Type header.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2009-5031

больше 13 лет назад

ModSecurity before 2.5.11 treats request parameter values containing single quotes as files, which allows remote attackers to bypass filtering rules and perform other attacks such as cross-site scripting (XSS) attacks via a single quote in a request parameter in the Content-Disposition field of a request with a multipart/form-data Content-Type header.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2009-5031

больше 13 лет назад

ModSecurity before 2.5.11 treats request parameter values containing s ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-rcvp-p5h6-67hw

больше 3 лет назад

ModSecurity before 2.5.11 treats request parameter values containing single quotes as files, which allows remote attackers to bypass filtering rules and perform other attacks such as cross-site scripting (XSS) attacks via a single quote in a request parameter in the Content-Disposition field of a request with a multipart/form-data Content-Type header.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2009-5031

ModSecurity before 2.5.11 treats request parameter values containing single quotes as files, which allows remote attackers to bypass filtering rules and perform other attacks such as cross-site scripting (XSS) attacks via a single quote in a request parameter in the Content-Disposition field of a request with a multipart/form-data Content-Type header.

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
nvd логотип
CVE-2009-5031

ModSecurity before 2.5.11 treats request parameter values containing single quotes as files, which allows remote attackers to bypass filtering rules and perform other attacks such as cross-site scripting (XSS) attacks via a single quote in a request parameter in the Content-Disposition field of a request with a multipart/form-data Content-Type header.

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
debian логотип
CVE-2009-5031

ModSecurity before 2.5.11 treats request parameter values containing s ...

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
github логотип
GHSA-rcvp-p5h6-67hw

ModSecurity before 2.5.11 treats request parameter values containing single quotes as files, which allows remote attackers to bypass filtering rules and perform other attacks such as cross-site scripting (XSS) attacks via a single quote in a request parameter in the Content-Disposition field of a request with a multipart/form-data Content-Type header.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу