Логотип exploitDog
bind:CVE-2012-2687
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-2687

Количество 7

Количество 7

ubuntu логотип

CVE-2012-2687

почти 13 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction of a variant list.

CVSS2: 2.6
EPSS: Низкий
redhat логотип

CVE-2012-2687

около 13 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction of a variant list.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2012-2687

почти 13 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction of a variant list.

CVSS2: 2.6
EPSS: Низкий
debian логотип

CVE-2012-2687

почти 13 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the make_varian ...

CVSS2: 2.6
EPSS: Низкий
github логотип

GHSA-8v5x-5rvv-5j4v

больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction of a variant list.

EPSS: Низкий
oracle-oval логотип

ELSA-2013-0512

больше 12 лет назад

ELSA-2013-0512: httpd security, bug fix, and enhancement update (LOW)

EPSS: Низкий
oracle-oval логотип

ELSA-2013-0130

больше 12 лет назад

ELSA-2013-0130: httpd security, bug fix, and enhancement update (LOW)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-2687

Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction of a variant list.

CVSS2: 2.6
5%
Низкий
почти 13 лет назад
redhat логотип
CVE-2012-2687

Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction of a variant list.

CVSS2: 2.6
5%
Низкий
около 13 лет назад
nvd логотип
CVE-2012-2687

Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction of a variant list.

CVSS2: 2.6
5%
Низкий
почти 13 лет назад
debian логотип
CVE-2012-2687

Multiple cross-site scripting (XSS) vulnerabilities in the make_varian ...

CVSS2: 2.6
5%
Низкий
почти 13 лет назад
github логотип
GHSA-8v5x-5rvv-5j4v

Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction of a variant list.

5%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2013-0512

ELSA-2013-0512: httpd security, bug fix, and enhancement update (LOW)

больше 12 лет назад
oracle-oval логотип
ELSA-2013-0130

ELSA-2013-0130: httpd security, bug fix, and enhancement update (LOW)

больше 12 лет назад

Уязвимостей на страницу