<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:34:44 +0000</lastBuildDate>
    <item>
      <title>certa-2006-avi-447</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2006-avi-447</link>
      <description>certa-2006-avi-447</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2006-avi-447</guid>
    </item>
    <item>
      <title>EUVD-2026-142215</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-142215</link>
      <description>EUVD-2026-142215</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-142215</guid>
    </item>
    <item>
      <title>fkie_cve-2006-3918</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2006-3918</link>
      <description>&lt;p&gt;http_protocol.c in (1) IBM HTTP Server 6.0 before 6.0.2.13 and 6.1 before 6.1.0.1, and (2) Apache HTTP Server 1.3 before 1.3.35, 2.0 before 2.0.58, and 2.2 before 2.2.2, does not sanitize the Expect header from an HTTP request when it is reflected back in an error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated using a Flash SWF file.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;http_protocol.c in (1) IBM HTTP Server 6.0 before 6.0.2.13 and 6.1 before 6.1.0.1, and (2) Apache HTTP Server 1.3 before 1.3.35, 2.0 before 2.0.58, and 2.2 before 2.2.2, does not sanitize the Expect header from an HTTP request when it is reflected back in an error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated using a Flash SWF file.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2006-3918</guid>
    </item>
    <item>
      <title>GHSA-67m9-fpj8-vgmv</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-67m9-fpj8-vgmv</link>
      <description>&lt;p&gt;http_protocol.c in (1) IBM HTTP Server 6.0 before 6.0.2.13 and 6.1 before 6.1.0.1, and (2) Apache HTTP Server 1.3 before 1.3.35, 2.0 before 2.0.58, and 2.2 before 2.2.2, does not sanitize the Expect header from an HTTP request when it is reflected back in an error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated using a Flash SWF file.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;http_protocol.c in (1) IBM HTTP Server 6.0 before 6.0.2.13 and 6.1 before 6.1.0.1, and (2) Apache HTTP Server 1.3 before 1.3.35, 2.0 before 2.0.58, and 2.2 before 2.2.2, does not sanitize the Expect header from an HTTP request when it is reflected back in an error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated using a Flash SWF file.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-67m9-fpj8-vgmv</guid>
    </item>
    <item>
      <title>gsd-2006-3918</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2006-3918</link>
      <description>gsd-2006-3918</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2006-3918</guid>
    </item>
    <item>
      <title>jvndb-2006-000992</title>
      <link>https://cve.radiocsirt.org/vuln/jvndb-2006-000992</link>
      <description>&lt;p&gt;Hitachi Web Server has vulnerabilities listed below:&#13;
&#13;
1. A vulnerability that allows to roll back the Open SSL version when using the SSL.&#13;
&#13;
2. Cross-site scripting vulnerability in contents created automatically by the Hitachi Web Server.&#13;
&#13;
3. Cross-site scripting vulnerability due to inadequate processing of the Expect header.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Hitachi Web Server has vulnerabilities listed below:&#13;
&#13;
1. A vulnerability that allows to roll back the Open SSL version when using the SSL.&#13;
&#13;
2. Cross-site scripting vulnerability in contents created automatically by the Hitachi Web Server.&#13;
&#13;
3. Cross-site scripting vulnerability due to inadequate processing of the Expect header.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/jvndb-2006-000992</guid>
    </item>
    <item>
      <title>RHSA-2006:0618 — Red Hat Security Advisory: apache security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2006:0618</link>
      <description>&lt;p&gt;httpd: Expect header XSS&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;httpd: Expect header XSS&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2006:0618</guid>
    </item>
  </channel>
</rss>
