RSS   Vulnerabilities for 'Webalizer'   RSS

2002-04-22
 
CVE-2002-0180

 

 
Buffer overflow in Webalizer 2.01-06, when configured to use reverse DNS lookups, allows remote attackers to execute arbitrary code by connecting to the monitored web server from an IP address that resolves to a long hostname.

 
2001-12-06
 
CVE-2001-0835

CWE-Other
 

 
Cross-site scripting vulnerability in Webalizer 2.01-06, and possibly other versions, allows remote attackers to inject arbitrary HTML tags by specifying them in (1) search keywords embedded in HTTP referrer information, or (2) host names that are retrieved via a reverse DNS lookup.

 


Copyright 2024, cxsecurity.com

 

Back to Top