Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-92pr-mcw9-qp7f

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The mod_auth_shadow module 1.0 through 1.5 and 2.0 for Apache with AuthShadow enabled uses shadow authentication for all locations that use the require group directive, even when other authentication mechanisms are specified, which might allow remote authenticated users to bypass security restrictions.

The mod_auth_shadow module 1.0 through 1.5 and 2.0 for Apache with AuthShadow enabled uses shadow authentication for all locations that use the require group directive, even when other authentication mechanisms are specified, which might allow remote authenticated users to bypass security restrictions.

EPSS

Процентиль: 80%
0.01486
Низкий

Связанные уязвимости

ubuntu
почти 20 лет назад

The mod_auth_shadow module 1.0 through 1.5 and 2.0 for Apache with AuthShadow enabled uses shadow authentication for all locations that use the require group directive, even when other authentication mechanisms are specified, which might allow remote authenticated users to bypass security restrictions.

nvd
почти 20 лет назад

The mod_auth_shadow module 1.0 through 1.5 and 2.0 for Apache with AuthShadow enabled uses shadow authentication for all locations that use the require group directive, even when other authentication mechanisms are specified, which might allow remote authenticated users to bypass security restrictions.

debian
почти 20 лет назад

The mod_auth_shadow module 1.0 through 1.5 and 2.0 for Apache with Aut ...

EPSS

Процентиль: 80%
0.01486
Низкий