CVE-2023-6710
published 2023-12-12CVE-2023-6710: A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to…
PriorityP433medium5.4CVSS 3.1
AVNACLPRLUIRSCCLILAN
EXPLOIT
EPSS
2.24%
80.9th percentile
A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds a new virtual host and adds the script to the cluster-manager page.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | enterprise_linux | — | — |
CVSS provenance
nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
vendor_redhat5.4MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
mod_cluster/mod_proxy_cluster: Stored Cross site Scripting
vendor_redhat·2023-12-12·CVSS 5.4
CVE-2023-6710 [MEDIUM] CWE-79 mod_cluster/mod_proxy_cluster: Stored Cross site Scripting
mod_cluster/mod_proxy_cluster: Stored Cross site Scripting
A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds a new virtual host and adds the script to the cluster-manager page.
A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds a new virtual host and adds the script to the cluster-manager page.
Statement: The impact of this vulnerabilit
GHSA
GHSA-5xpv-wgx6-ggmv: A flaw was found in the mod_proxy_cluster in the Apache server
ghsa_unreviewed·2023-12-13
CVE-2023-6710 [LOW] CWE-79 GHSA-5xpv-wgx6-ggmv: A flaw was found in the mod_proxy_cluster in the Apache server
A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds a new virtual host and adds the script to the cluster-manager page. The impact of this vulnerability is considered as Low, as the cluster_manager URL should not be exposed outside and is protected by user/password.
No detection rules found.
No writeups or analysis indexed.
https://access.redhat.com/errata/RHSA-2024:1316https://access.redhat.com/errata/RHSA-2024:1317https://access.redhat.com/errata/RHSA-2024:2387https://access.redhat.com/security/cve/CVE-2023-6710https://bugzilla.redhat.com/show_bug.cgi?id=2254128https://access.redhat.com/errata/RHSA-2024:1316https://access.redhat.com/errata/RHSA-2024:1317https://access.redhat.com/errata/RHSA-2024:2387https://access.redhat.com/security/cve/CVE-2023-6710https://bugzilla.redhat.com/show_bug.cgi?id=2254128
2023-12-12
Published