CVE-2018-13065
EUVD-2018-501503.07.2018, 12:29
ModSecurity 3.0.0 has XSS via an onerror attribute of an IMG element. NOTE: a third party has disputed this issue because it may only apply to environments without a Core Rule Set configured
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| owasp | modsecurity | 3.0.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References