Gravità: : Basso
  Identificatori CVE: CVE-2007-6421
  Data notifica: 21 luglio 2015

  Descrizione

Cross-site scripting (XSS) vulnerability in balancer-manager in mod_proxy_balancer in the Apache HTTP Server 2.2.0 through 2.2.6 allows remote attackers to inject arbitrary web script or HTML via the (1) ss, (2) wr, or (3) rr parameters, or (4) the URL.

  Informazioni esposizione:

Apply associated Trend Micro DPI Rules.

  Soluzioni

  Trend Micro Deep Security DPI Rule Number: 1000552
  Trend Micro Deep Security DPI Rule Name: 1000552 - Generic Cross Site Scripting(XSS) Prevention

  Software e versione interessati:

  • Apache Software Foundation Apache HTTP Server 2.2
  • Apache Software Foundation Apache HTTP Server 2.2.1
  • Apache Software Foundation Apache HTTP Server 2.2.2
  • Apache Software Foundation Apache HTTP Server 2.2.3
  • Apache Software Foundation Apache HTTP Server 2.2.4
  • Apache Software Foundation Apache HTTP Server 2.2.5 dev
  • Apache Software Foundation Apache HTTP Server 2.2.6