Логотип exploitDog
bind:CVE-2023-6710
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-6710

Количество 5

Количество 5

redhat логотип

CVE-2023-6710

больше 1 года назад

A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds a new virtual host and adds the script to the cluster-manager page.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2023-6710

больше 1 года назад

A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds a new virtual host and adds the script to the cluster-manager page.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2023-6710

больше 1 года назад

A flaw was found in the mod_proxy_cluster in the Apache server. This i ...

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-5xpv-wgx6-ggmv

больше 1 года назад

A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds a new virtual host and adds the script to the cluster-manager page. The impact of this vulnerability is considered as Low, as the cluster_manager URL should not be exposed outside and is protected by user/password.

CVSS3: 3.5
EPSS: Низкий
oracle-oval логотип

ELSA-2024-2387

больше 1 года назад

ELSA-2024-2387: mod_jk and mod_proxy_cluster security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2023-6710

A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds a new virtual host and adds the script to the cluster-manager page.

CVSS3: 5.4
1%
Низкий
больше 1 года назад
nvd логотип
CVE-2023-6710

A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds a new virtual host and adds the script to the cluster-manager page.

CVSS3: 5.4
1%
Низкий
больше 1 года назад
debian логотип
CVE-2023-6710

A flaw was found in the mod_proxy_cluster in the Apache server. This i ...

CVSS3: 5.4
1%
Низкий
больше 1 года назад
github логотип
GHSA-5xpv-wgx6-ggmv

A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds a new virtual host and adds the script to the cluster-manager page. The impact of this vulnerability is considered as Low, as the cluster_manager URL should not be exposed outside and is protected by user/password.

CVSS3: 3.5
1%
Низкий
больше 1 года назад
oracle-oval логотип
ELSA-2024-2387

ELSA-2024-2387: mod_jk and mod_proxy_cluster security update (MODERATE)

больше 1 года назад

Уязвимостей на страницу