Description
Multiple cross-site scripting (XSS) vulnerabilities in the balancer_handler function in the manager interface in mod_proxy_balancer.c in the mod_proxy_balancer module in the Apache HTTP Server 2.2.x before 2.2.24-dev and 2.4.x before 2.4.4 allow remote attackers to inject arbitrary web script or HTML via a crafted string.
Remediation
References
Related Vulnerabilities
Joomla! Core 1.5.x Arbitrary File Upload (1.5.0 - 1.5.15)
Envoy Proxy Uncontrolled Resource Consumption Vulnerability (CVE-2019-15226)
WordPress Plugin Import any XML or CSV File to WordPress Arbitrary File Upload (3.6.7)
WordPress Plugin DZS Video Gallery Multiple Cross-Site Scripting Vulnerabilities (All)