suse · CVE-2005-3352

Quick triage

Priority: medium Published: 2021-05-30 12:33:57 UTC Updated: 2026-04-18 20:42:55 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2005-3352 severity moderate: SUSE including 8 source package names (apache2-2.4.49-1.1, apache2-2.4.63-160000.2.2, …), 8 product×package rows across 2 product lines (SUSE Linux Enterprise Server 16.0, openSUSE Tumbleweed): Fixed 8.

Description:

Cross-site scripting (XSS) vulnerability in the mod_imap module of Apache httpd before 1.3.35-dev and Apache httpd 2.0.x before 2.0.56-dev allows remote attackers to inject arbitrary web script or HTML via the Referer when using image maps.

cvelogic Threat Intelligence