Total vulnerabilities in the database
The PDF XSS protection feature in ModSecurity before 2.5.8 allows remote attackers to cause a denial of service (Apache httpd crash) via a request for a PDF file that does not use the GET method.
Software | From | Fixed in |
---|---|---|
trustwave / modsecurity | - | 2.5.8 |
fedoraproject / fedora | 10 | 10.x |
fedoraproject / fedora | 9 | 9.x |