Description
Reflected cross-site scripting (XSS) in Apt-Cacher-NG v3.2.1. The vulnerability allows malicious scripts (XSS) to be executed in “/html/<filename>.html”.
Problem types
CWE-79 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')
Product status
3.2.1
Credits
Pablo Lago Romaní
References
www.incibe.es/...viso/multiple-vulnerabilities-apt-cacher-ng