CVE-2022-46391
04.12.2022, 03:15
AWStats 7.x through 7.8 allows XSS in the hostinfo plugin due to printing a response from Net::XWhois without proper checks.
| Vendor | Product | Version |
|---|---|---|
| awstats | awstats | 7.0 ≤ 𝑥 ≤ 7.8 |
| debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References