CVE-2018-13065
ModSecurity 3.0.0 has XSS via an onerror attribute of an IMG element. NOTE: a third party has disputed this issue becaus
ModSecurity 3.0.0 has XSS via an onerror attribute of an IMG element. NOTE: a third party has disputed this issue because it may only apply to environments without a Core Rule Set configured.
MEDIUM · CVSS 6.1
EPSS 0.00284
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0