QID 730529
Date Published: 2022-06-24
QID 730529: Apache Hypertext Transfer Protocol Server (HTTP Server) mod_proxy X-Forwarded-For dropped by hop-by-hop mechanism Vulnerability
Apache HTTP Server is an HTTP web server application.
Affected Versions:
Apache HTTP Server versions 2.4.53 and earlier
QID Detection Logic:(Unauthenticated)
This QID checks for server banner to detect if the target is running vulnerable version of apache httpd.
Successful exploitation allows information disclosure and possible remote code execution
Solution
Customers are advised to update latest Apache httpd
For more information, visit here.
For more information, visit here.
Vendor References
- Apache HTTP Server -
httpd.apache.org/security/vulnerabilities_24.html
CVEs related to QID 730529
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Apache httpd 2.4.53 |
|