Cross-site scripting (XSS) vulnerability in awstats.pl in AWStats 6.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the config parameter. NOTE: this might be the same core issue as CVE-2005-2732.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-04-20 15:02
Updated : 2008-11-02 22:18
NVD link : CVE-2006-1945
Mitre link : CVE-2006-1945
JSON object : View
CWE
Products Affected
awstats
- awstats