Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2006-3918 | First vendor Publication | 2006-07-27 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:M/Au:N/C:N/I:P/A:N) | |||
---|---|---|---|
Cvss Base Score | 4.3 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Medium |
Cvss Expoit Score | 8.6 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
http_protocol.c in (1) IBM HTTP Server 6.0 before 6.0.2.13 and 6.1 before 6.1.0.1, and (2) Apache HTTP Server 1.3 before 1.3.35, 2.0 before 2.0.58, and 2.2 before 2.2.2, does not sanitize the Expect header from an HTTP request when it is reflected back in an error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated using a Flash SWF file. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3918 |
CAPEC : Common Attack Pattern Enumeration & Classification
Id | Name |
---|---|
CAPEC-86 | Embedding Script (XSS ) in HTTP Headers |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-79 | Failure to Preserve Web Page Structure ('Cross-site Scripting') (CWE/SANS Top 25) |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:10352 | |||
Oval ID: | oval:org.mitre.oval:def:10352 | ||
Title: | http_protocol.c in (1) IBM HTTP Server 6.0 before 6.0.2.13 and 6.1 before 6.1.0.1, and (2) Apache HTTP Server 1.3 before 1.3.35, 2.0 before 2.0.58, and 2.2 before 2.2.2, does not sanitize the Expect header from an HTTP request when it is reflected back in an error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated using a Flash SWF file. | ||
Description: | http_protocol.c in (1) IBM HTTP Server 6.0 before 6.0.2.13 and 6.1 before 6.1.0.1, and (2) Apache HTTP Server 1.3 before 1.3.35, 2.0 before 2.0.58, and 2.2 before 2.2.2, does not sanitize the Expect header from an HTTP request when it is reflected back in an error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated using a Flash SWF file. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2006-3918 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 3 CentOS Linux 3 Red Hat Enterprise Linux 4 CentOS Linux 4 Oracle Linux 4 | Product(s): | |
Definition Synopsis: | |||
|
CPE : Common Platform Enumeration
ExploitDB Exploits
id | Description |
---|---|
2011-06-13 | Oracle HTTP Server XSS Header Injection |
OpenVAS Exploits
Date | Description |
---|---|
2011-01-04 | Name : HP-UX Update for Apache-based Web Server HPSBUX02612 File : nvt/gb_hp_ux_HPSBUX02612.nasl |
2009-10-22 | Name : HP-UX Update for Apache-based Web Server HPSBUX02465 File : nvt/gb_hp_ux_HPSBUX02465.nasl |
2009-10-10 | Name : SLES9: Security update for apache2,apache2-prefork,apache2-worker File : nvt/sles9p5013454.nasl |
2009-10-10 | Name : SLES9: Security update for Apache File : nvt/sles9p5023075.nasl |
2009-03-23 | Name : Ubuntu Update for apache2 vulnerabilities USN-575-1 File : nvt/gb_ubuntu_USN_575_1.nasl |
2009-01-23 | Name : SuSE Update for apache2,apache SUSE-SA:2008:021 File : nvt/gb_suse_2008_021.nasl |
2008-01-17 | Name : Debian Security Advisory DSA 1167-1 (apache) File : nvt/deb_1167_1.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
27488 | IBM HTTP Server Expect Header XSS |
27487 | Apache HTTP Server Crafted Expect Header Cross Domain HTML Injection |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2014-10-10 | Name : The remote device is missing a vendor-supplied security patch. File : f5_bigip_SOL6669.nasl - Type : ACT_GATHER_INFO |
2013-07-12 | Name : The remote Oracle Linux host is missing one or more security updates. File : oraclelinux_ELSA-2006-0619.nasl - Type : ACT_GATHER_INFO |
2013-06-29 | Name : The remote CentOS host is missing one or more security updates. File : centos_RHSA-2006-0618.nasl - Type : ACT_GATHER_INFO |
2013-01-24 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2008-0523.nasl - Type : ACT_GATHER_INFO |
2009-09-24 | Name : The remote SuSE 9 host is missing a security-related patch. File : suse9_12125.nasl - Type : ACT_GATHER_INFO |
2008-02-05 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-575-1.nasl - Type : ACT_GATHER_INFO |
2007-02-18 | Name : The remote host is missing a vendor-supplied security patch File : suse_SA_2006_051.nasl - Type : ACT_GATHER_INFO |
2006-10-14 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-1167.nasl - Type : ACT_GATHER_INFO |
2006-08-23 | Name : The remote web server is vulnerable to a cross-site scripting attack. File : www_expect_xss.nasl - Type : ACT_ATTACK |
2006-08-14 | Name : The remote CentOS host is missing one or more security updates. File : centos_RHSA-2006-0619.nasl - Type : ACT_GATHER_INFO |
2006-08-14 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2006-0619.nasl - Type : ACT_GATHER_INFO |
2006-08-10 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2006-0618.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:19:54 |
|
2024-11-28 12:09:36 |
|
2024-08-02 12:04:58 |
|
2024-08-02 01:01:59 |
|
2024-02-02 01:04:39 |
|
2024-02-01 12:01:59 |
|
2023-11-07 21:48:03 |
|
2023-09-05 12:04:21 |
|
2023-09-05 01:01:51 |
|
2023-09-02 12:04:24 |
|
2023-09-02 01:01:51 |
|
2023-08-12 12:05:13 |
|
2023-08-12 01:01:51 |
|
2023-08-11 12:04:29 |
|
2023-08-11 01:01:53 |
|
2023-08-06 12:04:14 |
|
2023-08-06 01:01:52 |
|
2023-08-04 12:04:19 |
|
2023-08-04 01:01:54 |
|
2023-07-14 12:04:18 |
|
2023-07-14 01:01:53 |
|
2023-03-29 01:04:38 |
|
2023-03-28 12:01:57 |
|
2022-10-11 12:03:49 |
|
2022-10-11 01:01:44 |
|
2022-09-22 02:10:34 |
|
2021-06-06 17:23:04 |
|
2021-06-03 13:23:14 |
|
2021-05-04 12:04:54 |
|
2021-04-22 01:05:30 |
|
2021-03-30 17:22:46 |
|
2020-05-23 00:18:10 |
|
2019-03-18 12:01:24 |
|
2017-10-11 09:23:44 |
|
2016-04-26 14:55:01 |
|
2014-10-11 13:25:57 |
|
2014-02-17 10:36:44 |
|
2013-05-11 11:05:13 |
|
2012-11-07 00:19:17 |
|