Apache Web Server Multiple Vulnerabilities
RISK: Medium Risk
TYPE: Servers - Web Servers
Two vulnerabilities have been identified in Apache which allow a remote user to conduct cross-site scripting attacks or obtain potentially sensitive information. A remote user can access the target user's cookies (including authentication cookies), if any, associated with the site running the Apache software, access data recently submitted by the target user via web form to the site, or take actions on the site acting as the target user.
Impact
- Cross-Site Scripting
- Information Disclosure
System / Technologies affected
- Apache version prior to 2.4.3
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Update to version 2.4.3
Vulnerability Identifier
Source
Related Link
Share with