Lucene search

K
redhatcveRedhat.comRH:CVE-2018-17082
HistoryOct 09, 2019 - 11:43 a.m.

CVE-2018-17082

2019-10-0911:43:46
redhat.com
access.redhat.com
12

EPSS

0.003

Percentile

68.0%

A cross-site scripting (XSS) vulnerability in Apache2 component of PHP was found. When using ‘Transfer-Encoding: chunked’, the request allows remote attackers to potentially run a malicious script in a victim’s browser. This vulnerability can be exploited only by producing malformed requests and it’s believed it’s unlikely to be used in practical cross-site scripting attack.