This application requires Javascript for optimal performance.

Apache.Mod.Perl.Status.XSS

Release Date

Mar 11, 2010

Severity

low

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt against a cross-site scripting vulnerability in Apache Perl module.

If /perl-status is accessible, malicious attackers could inject web scripts via a malicious HTTP request.

Affected Products

Apache Software Foundation mod_perl 2.0.4 and olders

Recommended Actions

Update your mod_perl software to the latest version.

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2009-0796

Reference/s

http://www.exploit-db.com/exploits/9993
http://www.securityfocus.com/bid/34383 (BugTraq)
http://www.vupen.com/english/advisories/2009/0943

Reference: VID-17366