CVE-2010-3294
Publication date 24 September 2010
Last updated 24 July 2024
Ubuntu priority
Description
Cross-site scripting (XSS) vulnerability in apc.php in the Alternative PHP Cache (APC) extension before 3.1.4 for PHP allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Notes
jdstrand
per Debian, vulnerable script is, mainly, for debugging purposes and is distributed gzip-compressed