Advisories ยป MGASA-2022-0461

Updated awstats packages fix security vulnerability

Publication date: 13 Dec 2022
Modification date: 13 Dec 2022
Type: security
Affected Mageia releases : 8
CVE: CVE-2022-46391

Description

AWStats 7.x through 7.8 allows XSS in the hostinfo plugin due to printing
a response from Net::XWhois without proper checks. (CVE-2022-46391)
                

References

SRPMS

8/core