The PDF XSS protection feature in ModSecurity before 2.5.8 allows remote attackers to cause a denial of service (Apache httpd crash) via a request for a PDF file that does not use the GET method.
References
Configurations
History
No history.
Information
Published : 2009-06-03 17:00
Updated : 2026-06-16 23:08
NVD link : CVE-2009-1903
Mitre link : CVE-2009-1903
CVE.ORG link : CVE-2009-1903
JSON object : View
Products Affected
trustwave
- modsecurity
fedoraproject
- fedora
CWE
