Описание
Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apache 2.x, when SecFilterScanPost is enabled, allows remote attackers to execute arbitrary code via crafted POST requests.
Ссылки
- Patch
- Third Party AdvisoryUS Government Resource
- Patch
- Patch
- Third Party AdvisoryUS Government Resource
- Patch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:mod_security:mod_security:1.7.4:*:*:*:*:*:*:*
EPSS
Процентиль: 94%
0.15101
Средний
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
debian
больше 20 лет назад
Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apa ...
github
больше 3 лет назад
Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apache 2.x, when SecFilterScanPost is enabled, allows remote attackers to execute arbitrary code via crafted POST requests.
EPSS
Процентиль: 94%
0.15101
Средний
7.5 High
CVSS2
Дефекты
NVD-CWE-Other