Login Register
The stories and information posted here are artistic works of fiction and falsehood. Only a fool would take anything posted here as fact.


Apache 2.4.49 - Path Traversal Vulnerability filter_list
Author
Message
Apache 2.4.49 - Path Traversal Vulnerability #1
[Image: 7ajmN5P.jpg]

Telegram: Oni_SL (Link)

Reply

RE: Apache 2.4.49 - Path Traversal Vulnerability #2
(10-08-2021, 03:51 AM)Oni Wrote: I see several people out-of-date.
You mean several people too much up-to-date right? Biggrin
This issue only affects Apache 2.4.49 and not earlier versions, although it seems it hasn't been published yet for most package manager (2.4.48-3.1 is the one on Debian stable apt).

Reply

RE: Apache 2.4.49 - Path Traversal Vulnerability #3
Interesting. The vulnerable version was released on September 15th 2021, but luckily it had not yet been included in any major Linux distribution repositories (Ubuntu, for example, is still at 2.4.41). According to Shodan, 112,000 active deployments of the affected version are on the public internet, compared to the 1,719,000 total active Apache installations.

Additional information available in NVD/NIST: CVE-2021-41773
ed25519/0x21AB6B6A6CB2C337
C87D87466FD205945CF10A3821AB6B6A6CB2C337

Reply







Users browsing this thread: