Think you have a false positive on this rule?

Sid 1-16611

Message

SERVER-APACHE Apache 413 error HTTP request method cross-site scripting attack

Summary

Apache HTTP Server 2.0.x and 2.2.x does not sanitize the HTTP Method specifier header from an HTTP request when it is reflected back in a "413 Request Entity Too Large" error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated via an HTTP request containing an invalid Content-length value, a similar issue to CVE-2006-3918.

Impact

CVSS base score 4.3 CVSS impact score 2.9 CVSS exploitability score 8.6 confidentialityImpact NONE integrityImpact PARTIAL availabilityImpact PARTIAL

CVE-2007-6203:

CVSS base score 4.3

CVSS impact score 2.9

CVSS exploitability score 8.6

Confidentiality Impact NONE

Integrity Impact PARTIAL

Availability Impact NONE

Detailed information

CVE-2007-6203: Apache HTTP Server 2.0.x and 2.2.x does not sanitize the HTTP Method specifier header from an HTTP request when it is reflected back in a "413 Request Entity Too Large" error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated via an HTTP request containing an invalid Content-length value, a similar issue to CVE-2006-3918.

Affected systems

  • apache http_server 2.0.46
  • apache http_server 2.0.47
  • apache http_server 2.0.48
  • apache http_server 2.0.49
  • apache http_server 2.0.50
  • apache http_server 2.0.51
  • apache http_server 2.0.52
  • apache http_server 2.0.53
  • apache http_server 2.0.54
  • apache http_server 2.0.55
  • apache http_server 2.0.57
  • apache http_server 2.0.58
  • apache http_server 2.0.59
  • apache http_server 2.1.1
  • apache http_server 2.1.2
  • apache http_server 2.1.3
  • apache http_server 2.1.4
  • apache http_server 2.1.5
  • apache http_server 2.1.6
  • apache http_server 2.1.7
  • apache http_server 2.1.8
  • apache http_server 2.2.0
  • apache http_server 2.2.2
  • apache http_server 2.2.3
  • apache http_server 2.2.4

Ease of attack

CVE-2007-6203:

Access Vector NETWORK

Access Complexity MEDIUM

Authentication NONE

False positives

None known

False negatives

None known

Corrective action

Upgrade to the latest non-affected version of the software.

Apply the appropriate vendor supplied patches.

Contributors

  • Talos research team.
  • This document was generated from data supplied by the national vulnerability database, a product of the national institute of standards and technology.
  • For more information see nvd.

Additional References