CVE Vulnerabilities

CVE-2001-0835

Published: Dec 06, 2001 | Modified: Nov 20, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Cross-site scripting vulnerability in Webalizer 2.01-06, and possibly other versions, allows remote attackers to inject arbitrary HTML tags by specifying them in (1) search keywords embedded in HTTP referrer information, or (2) host names that are retrieved via a reverse DNS lookup.

Affected Software

Name Vendor Start Version End Version
Webalizer Bradford_barrett * 2.0.6 (including)
Red Hat Linux 7.2 RedHat *
Red Hat Powertools 7.0 RedHat *
Red Hat Powertools 7.1 RedHat *

References