Rapid7 Security Advisory – mod_proxy_ftp as included with Apache versions 2.2.9 and below and 2.0.63 and below suffers from a cross site scripting vulnerability.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/68874/R7-0033.txt
Source: https://packetstormsecurity.com/files/68874/Rapid7-Security-Advisory-33.html