CVE-2000-1205
CVSS 2.0 Score 4.3 of 10 (medium)
Details
Summary
CVE-2000-1205 is a cross-site scripting vulnerability impacting Apache 1.3.0 to 1.3.11. Attackers can exploit this issue by injecting scripts into web pages generated by the printenv CGI (printenv.pl), ap_send_error_response function, or certain Apache modules and core code. The scripts are executed in the context of other web site visitors, potentially leading to unauthorized access or data theft. The printenv vulnerability may still pose a risk for web browsers that can render text/plain content types as HTML, such as Internet Explorer, but CVE views this as a browser limitation rather than an Apache flaw.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Apache Software Foundation Apache HTTP Server
Affected Vendors
- Apache Software Foundation