VDB
CVE-2005-3352
CVE-2005-3352
PUBLISHED
CVSS 9.300000190734863 CRITICAL
Une vulnérabilité de type « cross site scripting » est présente dans le module mod_imap d'Apache. Cette vulnérabilité peut être utilisée par un utilisateur mal intentionné pour faire exécuter un script par le navigateur d'un utilisateur consultant le site vulnérable..
EPSS 28.14% · 96.6th percentile
Risk Scores
CVSS 4.0
9.300000190734863
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
EPSS Score
28.14%
96.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apache | N/A |
Exploit Intelligence
- Information about my advisory on CVE-2006-3747 (Apache mod_rewrite LDAP off-by-one buffer overflow).. At the time, it was the first public working exploit :) (github-poc)
- Information about my advisory on CVE-2006-3747 (Apache mod_rewrite LDAP off-by-one buffer overflow).. At the time, it was the first public working exploit :) (github-poc)
- Information about my advisory on CVE-2006-3747 (Apache mod_rewrite LDAP off-by-one buffer overflow).. At the time, it was the first public working exploit :) (github-poc)
- Information about my advisory on CVE-2006-3747 (Apache mod_rewrite LDAP off-by-one buffer overflow).. At the time, it was the first public working exploit :) (github-poc)
- Information about my advisory on CVE-2006-3747 (Apache mod_rewrite LDAP off-by-one buffer overflow).. At the time, it was the first public working exploit :) (github-poc)
Timeline
- Dec 13, 2005 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Dec 17, 2024 EPSS Score
- Mar 17, 2025 EPSS Score
- Mar 23, 2025 EPSS Score
- Mar 29, 2025 EPSS Score
- Mar 30, 2025 EPSS Score
- May 1, 2025 EPSS Score
- May 4, 2025 EPSS Score
- Jun 5, 2025 EPSS Score
- Jul 1, 2025 EPSS Score
References
- https://cert.ssi.gouv.fr/avis/CERTA-2005-AVI-490/ advisory
- https://cert.ssi.gouv.fr/avis/CERTA-2008-AVI-148/ advisory
- http://docs.info.apple.com/article.html?artnum=307562 advisory
- https://cert.ssi.gouv.fr/avis/CERTA-2008-AVI-214/ advisory
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01428449 advisory
- https://cert.ssi.gouv.fr/avis/CERTA-2008-AVI-278/ advisory