Back to search
CVE-2008-3714
Published: Aug 19, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in awstats.pl in AWStats 6.8 allows remote attackers to inject arbitrary web script or HTML via the query_string, a different vulnerability than CVE-2006-3681 and CVE-2006-1945.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
32939
third-party-advisory
x_refsource_SECUNIA
31519
third-party-advisory
x_refsource_SECUNIA
33002
third-party-advisory
x_refsource_SECUNIA
31759
third-party-advisory
x_refsource_SECUNIA
DSA-1679
vendor-advisory
x_refsource_DEBIAN
ADV-2008-2399
vdb-entry
x_refsource_VUPEN
1020704
vdb-entry
x_refsource_SECTRACK
awstats-awstats-xss(44504)
vdb-entry
x_refsource_XF
MDVSA-2008:203
vendor-advisory
x_refsource_MANDRIVA
FEDORA-2008-7663
vendor-advisory
x_refsource_FEDORA
30730
vdb-entry
x_refsource_BID
FEDORA-2008-7684
vendor-advisory
x_refsource_FEDORA
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=495432
x_refsource_CONFIRM
http://awstats.sourceforge.net/docs/awstats_changelog.txt
x_refsource_CONFIRM
USN-686-1
vendor-advisory
x_refsource_UBUNTU
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now