Lucene search

K
hackeroneBugs3raH1:66929
HistoryJun 09, 2015 - 5:47 p.m.

Marktplaats: Multiple Apache 2.2.22 Vulnerabilities (XSS/ Code Exec/ DoS)

2015-06-0917:47:58
bugs3ra
hackerone.com
5259

EPSS

0.927

Percentile

99.0%

Hello,

Your current version of apache 2.2.22 for http://aanbieding.marktplaats.com is vulnerable to many issues like DoS, XSS and Code Exec

  1. DoS
    Refer:
    http://www.cvedetails.com/cve/CVE-2014-0231/
    http://www.cvedetails.com/cve/CVE-2014-0098/
    http://www.cvedetails.com/cve/CVE-2013-6438/
    http://www.cvedetails.com/cve/CVE-2013-1896/

  2. XSS
    Refer:
    http://www.cvedetails.com/cve/CVE-2012-4558/
    http://www.cvedetails.com/cve/CVE-2012-3499/

  3. Code Exec
    Refer:
    http://www.cvedetails.com/cve/CVE-2013-1862/

POC: Not available as it is well Known and fixed in newer versions of apache.
Please update it as soon as possible