CVE-2002-0840

Impact:
Low
Public Date:
2002-10-02
Bugzilla:
1616823: CVE-2002-0840 security flaw

The MITRE CVE dictionary describes this issue as:

Cross-site scripting (XSS) vulnerability in the default error page of Apache 2.0 before 2.0.43, and 1.3.x up to 1.3.26, when UseCanonicalName is "Off" and support for wildcard DNS is present, allows remote attackers to execute script as other web page visitors via the Host: header, a different vulnerability than CAN-2002-1157.

Find out more about CVE-2002-0840 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 2.1 RHSA-2002:251 2003-01-09
Stronghold 4 for Red Hat Enterprise Linux RHSA-2002:248 2002-11-07
Red Hat Linux 7.2 RHSA-2002:222 2002-12-12
Red Hat Linux 7.3 RHSA-2002:222 2002-12-12
Red Hat Stronghold 3 RHSA-2002:243 2002-11-08
Red Hat Linux 6.2 RHSA-2002:222 2002-12-12
Red Hat Linux 8.0 RHSA-2002:222 2002-12-12
Red Hat Linux 7.1 RHSA-2002:222 2002-12-12
Red Hat Linux 7.0 RHSA-2002:222 2002-12-12
Red Hat Linux 7.1 RHSA-2003:106 2003-04-22
Red Hat Stronghold 4 RHSA-2002:244 2002-11-08

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.