Skip to content

CVE-2022-40743 | Apache Traffic Server

Improper Input Validation vulnerability for the xdebug plugin in Apache Software Foundation Apache Traffic Server can lead to cross site scripting and cache poisoning attacks.This issue affects Apache Traffic Server: 9.0.0 to 9.1.3. Users should upgrade to 9.1.4 or later versions. .This CVE has a CVSS3.1 score of 4.3 and a Base Severity of MEDIUM.

InfoDetails
CVE IDCVE-2022-40743
CVE StatePUBLISHED
BaseScoreNA
BaseSeverityNA
VectorStringNA
VersionNA

References for CVE-2022-40743 :
https://lists.apache.org/thread/mrj2lg4s0hf027rk7gz8t7hbn9xpfg02

Metric TypeMetric Score
AttackVector(AV)NA
AttackComplexity(AC)NA
PrivilegesRequired(PR)NA
UserInteraction(UI)NA
Scope(S)NA
Confidentiality(C)NA
Availability(A)NA
Integrity(I)NA