Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2008-5080
Description:awstats.pl in AWStats 6.8 and earlier does not properly remove quote characters, which allows remote attackers to conduct cross-site scripting (XSS) attacks via the query_string parameter. NOTE: this issue exists because of an incomplete fix for CVE-2008-3714.
Test IDs: 1.3.6.1.4.1.25623.1.0.800151   1.3.6.1.4.1.25623.1.0.62835   1.3.6.1.4.1.25623.1.0.62833   1.3.6.1.4.1.25623.1.0.63106   1.3.6.1.4.1.25623.1.0.62831  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2008-5080
33002
http://secunia.com/advisories/33002
USN-686-1
http://www.ubuntu.com/usn/usn-686-1
awstats-querystring-xss(47116)
https://exchange.xforce.ibmcloud.com/vulnerabilities/47116
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=495432#21
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=495432#21
https://bugzilla.redhat.com/show_bug.cgi?id=474396
https://bugzilla.redhat.com/show_bug.cgi?id=474396




© 1998-2025 E-Soft Inc. All rights reserved.