Apache 2.2.15 mod_proxy - Reverse Proxy Security Bypass



EKU-ID: 41203 CVE: CVE-2011-3639;OSVDB-77444 OSVDB-ID:
Author: Tomas Hoger Published: 2012-02-06 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/51869/info

Apache HTTP Server is prone to a security-bypass vulnerability.

Successful exploits will allow attackers to bypass certain security restrictions and obtain sensitive information about running web applications.

RewriteRule ^(.*) http://www.example.com$1
ProxyPassMatch ^(.*) http://www.example.com$1