IP address spoofing when proxying using mod_remoteip and mod_rewrite For configurations using proxying with mod_remoteip and certain mod_rewrite rules, an attacker could spoof their IP address for logging and PHP scripts. Note this issue was fixed in Apache HTTP Server 2.4.24 but was retrospectively allocated a low severity CVE in 2020.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apache
Published: 2020-08-07T15:36:31
Updated: 2024-08-04T11:48:58.232Z
Reserved: 2020-04-21T00:00:00
Link: CVE-2020-11985
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-08-07T16:15:11.810
Modified: 2024-11-21T04:59:03.163
Link: CVE-2020-11985
Redhat