A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.
Metrics
Affected Vendors & Products
References
History
Wed, 14 Aug 2024 00:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
MITRE
Status: PUBLISHED
Assigner: apache
Published: 2021-09-16T14:40:23
Updated: 2024-08-04T02:44:10.131Z
Reserved: 2021-09-02T00:00:00
Link: CVE-2021-40438
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-09-16T15:15:07.633
Modified: 2024-07-24T17:08:07.093
Link: CVE-2021-40438
Redhat