The PDF XSS protection feature in ModSecurity before 2.5.8 allows remote attackers to cause a denial of service (Apache httpd crash) via a request for a PDF file that does not use the GET method.
References
Configurations
History
No history.
Information
Published : 2009-06-03 17:00
Updated : 2025-04-09 00:30
NVD link : CVE-2009-1903
Mitre link : CVE-2009-1903
CVE.ORG link : CVE-2009-1903
JSON object : View
Products Affected
trustwave
- modsecurity
fedoraproject
- fedora
CWE