Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2001-0835
Description:Cross-site scripting vulnerability in Webalizer 2.01-06, and possibly other versions, allows remote attackers to inject arbitrary HTML tags by specifying them in (1) search keywords embedded in HTTP referrer information, or (2) host names that are retrieved via a reverse DNS lookup.
Test IDs: 1.3.6.1.4.1.25623.1.0.10816  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2001-0835
BugTraq ID: 3473
http://www.securityfocus.com/bid/3473
Bugtraq: 20011024 Cross-site Scripting Flaw in webalizer (Google Search)
http://marc.info/?l=bugtraq&m=100394630702875&w=2
En Garde Linux Advisory: ESA-20011101-01
http://www.linuxsecurity.com/advisories/other_advisory-1677.html
RedHat Security Advisories: RHSA-2001:140
http://www.redhat.com/support/errata/RHSA-2001-140.html
RedHat Security Advisories: RHSA-2001:141
http://www.redhat.com/support/errata/RHSA-2001-141.html
SuSE Security Announcement: SuSE-SA:2001:040 (Google Search)
http://lists.suse.com/archives/suse-security-announce/2001-Nov/0001.html
XForce ISS Database: webalizer-html-tag-host(7350)
https://exchange.xforce.ibmcloud.com/vulnerabilities/7350
XForce ISS Database: webalizer-html-tags-keywords(7351)
https://exchange.xforce.ibmcloud.com/vulnerabilities/7351




© 1998-2025 E-Soft Inc. All rights reserved.