Mandriva Linux Security Advisory 2009-091 – Cross-site scripting (XSS) vulnerability in Status.pm in Apache::Status and Apache2::Status in mod_perl1 and mod_perl2 for the Apache HTTP Server, when /perl-status is accessible, allows remote attackers to inject arbitrary web script or HTML via the URI. The updated packages have been patched to correct these issues. Packages for 2008.0 are being provided due to extended support for Corporate products.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/83574/MDVSA-2009-091-1.txt
Source: https://packetstormsecurity.com/files/83574/Mandriva-Linux-Security-Advisory-2009-091.html

