CVE-2005-3352

EPSS 28.1%

apache - missing input sanitising

Published: 12/13/2005Modified: 4/28/2026

Description

Cross-site scripting (XSS) vulnerability in the mod_imap module of Apache httpd before 1.3.35-dev and Apache httpd 2.0.x before 2.0.56-dev allows remote attackers to inject arbitrary web script or HTML via the Referer when using image maps.

Affected packages (2)

References (1)