PT-2006-4764 · Apache+3 · Apache Http Server+3

·

CVE-2006-3918

·

Publicado

2006-05-08

·

Atualizado

2022-09-21

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM HTTP Server versions 6.0 through 6.0.2.13 IBM HTTP Server versions 6.1 through 6.1.0.1 Apache HTTP Server versions 1.3 through 1.3.35 Apache HTTP Server versions 2.0 through 2.0.58 Apache HTTP Server versions 2.2 through 2.2.2
Description The issue arises from the failure to sanitize the Expect header in HTTP requests when it is reflected back in an error message. This could allow cross-site scripting style attacks using web client components that can send arbitrary headers in requests. For instance, a Flash SWF file can be used to demonstrate this vulnerability. An attacker could exploit this flaw by influencing the Expect header that a victim sends to a target site, potentially leading to a cross-site scripting attack.
Recommendations For IBM HTTP Server versions 6.0 through 6.0.2.13, update to version 6.0.2.13 or later. For IBM HTTP Server versions 6.1 through 6.1.0.1, update to version 6.1.0.1 or later. For Apache HTTP Server versions 1.3 through 1.3.35, update to version 1.3.35 or later. For Apache HTTP Server versions 2.0 through 2.0.58, update to version 2.0.58 or later. For Apache HTTP Server versions 2.2 through 2.2.2, update to version 2.2.2 or later. As a temporary workaround, consider restricting access to the Expect header to minimize the risk of exploitation.

Exploit

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2006-3918
DSA-1167-1
HPSBUX02465
HPSBUX02612
RHSA-2006:0619
RHSA-2006_0619
RHSA-2008:0523
RHSA-2010:0602

Produtos afetados

Apache Http Server
Hp-Ux
Ibm Http Server
Red Hat