CVE-2009-0796
Apache mod_perl - Cross-Site Scripting via URI Parameter in Apache::Status
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-0796. PoCs published by Richard H. Brain.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in Apache's mod_perl module, where user-supplied data is insufficiently sanitized. The example URL demonstrates how an attacker could inject arbitrary script code into a victim's browser.
Description
Cross-site scripting (XSS) vulnerability in Status.pm in Apache::Status and Apache2::Status in mod_perl1 and mod_perl2 for the Apache HTTP Server, when /perl-status is accessible, allows remote attackers to inject arbitrary web script or HTML via the URI.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in Apache's mod_perl module, where user-supplied data is insufficiently sanitized. The example URL demonstrates how an attacker could inject arbitrary script code into a victim's browser.