Описание
Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apache 2.x, when SecFilterScanPost is enabled, allows remote attackers to execute arbitrary code via crafted POST requests.
Ссылки
- Patch
- Third Party AdvisoryUS Government Resource
- Patch
- Patch
- Third Party AdvisoryUS Government Resource
- Patch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:mod_security:mod_security:1.7.4:*:*:*:*:*:*:*
EPSS
Процентиль: 96%
0.22301
Средний
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
debian
около 21 года назад
Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apa ...
github
почти 4 года назад
Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apache 2.x, when SecFilterScanPost is enabled, allows remote attackers to execute arbitrary code via crafted POST requests.
EPSS
Процентиль: 96%
0.22301
Средний
7.5 High
CVSS2
Дефекты
NVD-CWE-Other