Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-40898

Опубликовано: 18 июл. 2024
Источник: ubuntu
Приоритет: medium
CVSS3: 7.5

Описание

SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests. Users are recommended to upgrade to version 2.4.62 which fixes this issue.

РелизСтатусПримечание
devel

not-affected

windows-specific
esm-infra-legacy/trusty

not-affected

windows-specific
esm-infra/bionic

not-affected

windows-specific
esm-infra/focal

not-affected

windows-specific
esm-infra/xenial

not-affected

windows-specific
focal

not-affected

windows-specific
jammy

not-affected

windows-specific
noble

not-affected

windows-specific
trusty/esm

not-affected

windows-specific
upstream

needs-triage

Показывать по

Ссылки на источники

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
11 месяцев назад

SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests. Users are recommended to upgrade to version 2.4.62 which fixes this issue. 

CVSS3: 7.5
nvd
11 месяцев назад

SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests. Users are recommended to upgrade to version 2.4.62 which fixes this issue. 

CVSS3: 7.5
msrc
11 месяцев назад

Описание отсутствует

CVSS3: 7.5
debian
11 месяцев назад

SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost ...

CVSS3: 9.1
github
11 месяцев назад

SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests. Users are recommended to upgrade to version 2.4.62 which fixes this issue. 

7.5 High

CVSS3