AWStats 7.x through 7.8 allows XSS in the hostinfo plugin due to printing a response from Net::XWhois without proper checks.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-12-04T00:00:00

Updated: 2023-01-18T00:00:00

Reserved: 2022-12-04T00:00:00


Link: CVE-2022-46391

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2022-12-04T03:15:09.967

Modified: 2023-11-07T03:55:36.373


Link: CVE-2022-46391

JSON object: View

cve-icon Redhat Information

No data.

CWE