Логотип exploitDog
bind: "CVE-2024-38472"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2024-38472"

Количество 8

Количество 8

ubuntu логотип

CVE-2024-38472

около 1 года назад

SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via SSRF and malicious requests or content Users are recommended to upgrade to version 2.4.60 which fixes this issue. Note: Existing configurations that access UNC paths will have to configure new directive "UNCList" to allow access during request processing.

CVSS3: 7.5
EPSS: Высокий
redhat логотип

CVE-2024-38472

около 1 года назад

SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via SSRF and malicious requests or content Users are recommended to upgrade to version 2.4.60 which fixes this issue.  Note: Existing configurations that access UNC paths will have to configure new directive "UNCList" to allow access during request processing.

CVSS3: 7.5
EPSS: Высокий
nvd логотип

CVE-2024-38472

около 1 года назад

SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via SSRF and malicious requests or content Users are recommended to upgrade to version 2.4.60 which fixes this issue.  Note: Existing configurations that access UNC paths will have to configure new directive "UNCList" to allow access during request processing.

CVSS3: 7.5
EPSS: Высокий
msrc логотип

CVE-2024-38472

9 месяцев назад

CVSS3: 7.5
EPSS: Высокий
debian логотип

CVE-2024-38472

около 1 года назад

SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM ...

CVSS3: 7.5
EPSS: Высокий
github логотип

GHSA-fjcc-r94c-wxr8

около 1 года назад

SSRF in Apache HTTP Server on Windows allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests or content Users are recommended to upgrade to version 2.4.60 which fixes this issue.  Note: Existing configurations that access UNC paths will have to configure new directive "UNCList" to allow access during request processing.

CVSS3: 7.5
EPSS: Высокий
fstec логотип

BDU:2024-05354

около 1 года назад

Уязвимость веб-сервера Apache HTTP Server связана с недостаточной проверкой поступающих запросов, позволяющая нарушителю осуществить SSRF-атаку

CVSS3: 8.8
EPSS: Высокий
redos логотип

ROS-20250812-08

25 дней назад

Множественные уязвимости httpd

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-38472

SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via SSRF and malicious requests or content Users are recommended to upgrade to version 2.4.60 which fixes this issue. Note: Existing configurations that access UNC paths will have to configure new directive "UNCList" to allow access during request processing.

CVSS3: 7.5
89%
Высокий
около 1 года назад
redhat логотип
CVE-2024-38472

SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via SSRF and malicious requests or content Users are recommended to upgrade to version 2.4.60 which fixes this issue.  Note: Existing configurations that access UNC paths will have to configure new directive "UNCList" to allow access during request processing.

CVSS3: 7.5
89%
Высокий
около 1 года назад
nvd логотип
CVE-2024-38472

SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via SSRF and malicious requests or content Users are recommended to upgrade to version 2.4.60 which fixes this issue.  Note: Existing configurations that access UNC paths will have to configure new directive "UNCList" to allow access during request processing.

CVSS3: 7.5
89%
Высокий
около 1 года назад
msrc логотип
CVSS3: 7.5
89%
Высокий
9 месяцев назад
debian логотип
CVE-2024-38472

SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM ...

CVSS3: 7.5
89%
Высокий
около 1 года назад
github логотип
GHSA-fjcc-r94c-wxr8

SSRF in Apache HTTP Server on Windows allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests or content Users are recommended to upgrade to version 2.4.60 which fixes this issue.  Note: Existing configurations that access UNC paths will have to configure new directive "UNCList" to allow access during request processing.

CVSS3: 7.5
89%
Высокий
около 1 года назад
fstec логотип
BDU:2024-05354

Уязвимость веб-сервера Apache HTTP Server связана с недостаточной проверкой поступающих запросов, позволяющая нарушителю осуществить SSRF-атаку

CVSS3: 8.8
89%
Высокий
около 1 года назад
redos логотип
ROS-20250812-08

Множественные уязвимости httpd

CVSS3: 8.8
25 дней назад

Уязвимостей на страницу