Multiple vulnerabilities in Apache HTTP server

Posted by RitwikGhoshal on Oracle Blogs See other posts from Oracle Blogs or by RitwikGhoshal
Published on Tue, 18 Dec 2012 22:34:49 +0000 Indexed on 2012/12/19 5:08 UTC
Read the original article Hit count: 156

Filed under:
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-0883 Permissions, Privileges, and Access Controls vulnerability 6.9 Apache HTTP server
Solaris 10 SPARC: 120543-30 X86: 120544-30
Solaris 11.1 Contact Support
CVE-2012-2687 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability 2.6

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.
Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.

© Oracle Blogs or respective owner

Related posts about /Alerts