Cross-Site Scripting Vulnerability in Apache mod_imap Module

    Date: 12/16/05 (Java Web)    Keywords: html, web, apache

    A cross-site scripting (XSS) vulnerability has been discovered in the Apache httpd server's mod_imap module which allows remote attackers to inject arbitrary web script or HTML via the Referer when using image maps. Input passed to the image map "Referer" directive in "mod_imap" isn't properly sanitised before being returned to the user. This can be exploited [...]

    Source: http://blog.taragana.com/index.php/archive/cross-site-scripting-vulnerability-in-apache-mod_imap-module/

« Mona Lisa was 83 per cent... || GMail Goes Mobile; Other... »


antivirus | apache | asp | blogging | browser | bugtracking | cms | crm | css | database | ebay | ecommerce | google | hosting | html | java | jsp | linux | microsoft | mysql | offshore | offshoring | oscommerce | php | postgresql | programming | rss | security | seo | shopping | software | spam | spyware | sql | technology | templates | tracker | virus | web | xml | yahoo | home