MDVSA-2009:091-1 -- Mandriva mod_perl
|ID: oval:org.secpod.oval:def:300996||Date: (C)2012-01-07 (M)2017-10-04|
|Class: PATCH||Family: unix|
A vulnerability has been found and corrected in mod_perl v1.x and v2.x: Cross-site scripting vulnerability in Status.pm in Apache::Status and Apache2::Status in mod_perl1 and mod_perl2 for the Apache HTTP Server, when /perl-status is accessible, allows remote attackers to inject arbitrary web script or HTML via the URI . The updated packages have been patched to correct these issues. Update: Packages for 2008.0 are being provided due to extended support for Corporate products.
|Mandriva Linux 2008.0|