VDB

DEBIAN-CVE-2007-6421

DEBIAN-CVE-2007-6421 PUBLISHED CVSS 9.300000190734863 CRITICAL

Cross-site scripting (XSS) vulnerability in balancer-manager in mod_proxy_balancer in the Apache HTTP Server 2.2.0 through 2.2.6 allows remote attackers to inject arbitrary web script or HTML via the (1) ss, (2) wr, or (3) rr parameters, or (4) the URL.

Risk Scores

CVSS v4.0
9.300000190734863
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N

Affected Products

VendorProductVersions
Debian:14apache20, 0, 0
Debian:12apache20, 0, 0
Debian:11apache20, 0, 0
Debian:13apache20, 0, 0

Timeline

  • Jan 8, 2008 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›