THREATOPS
THREAT OPSThreat News › [NVD] CVE-2023-6710 (MEDIUM 5.4) — A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds

[NVD] CVE-2023-6710 (MEDIUM 5.4) — A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds

lownvdPublished 2023-12-12

CVE-2023-6710 CVSS: 5.4 MEDIUM Published: 2023-12-12T22:15:22.950

A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cross-site scripting (XSS) vulnerability. By adding a script on the alias parameter on the URL, it adds a new virtual host and adds the script to the cluster

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2023-6710