CVE-2009-2823

Apple Mac OS X < 10.6.1 - XSS

Title source: rule

Description

The Apache HTTP Server in Apple Mac OS X before 10.6.2 enables the HTTP TRACE method, which allows remote attackers to conduct cross-site scripting (XSS) attacks via unspecified web client software.

Scores

EPSS 0.0027
EPSS Percentile 50.6%

Classification

CWE
CWE-79
Status published

Affected Products (50)

apple/mac_os_x < 10.6.1
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
apple/mac_os_x
... and 35 more

Timeline

Published Nov 10, 2009
Tracked Since Feb 18, 2026