ModSecurity 3.0.0 has XSS via an onerror attribute of an IMG element. NOTE: a third party has disputed this issue because it may only apply to environments without a Core Rule Set configured
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-07-03T11:00:00

Updated: 2018-07-06T14:57:01

Reserved: 2018-07-02T00:00:00


Link: CVE-2018-13065

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2018-07-03T12:29:00.280

Modified: 2024-05-17T01:23:15.853


Link: CVE-2018-13065

JSON object: View

cve-icon Redhat Information

No data.

CWE