VDB

ANCHORE-2024-40898

ANCHORE-2024-40898 PUBLISHED

SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests. Users are recommended to upgrade to version 2.4.62 which fixes this issue.

Affected Products

VendorProductVersions
Apache Software FoundationApache HTTP Server2.4.0, 2.4.0, 2.4.0

Timeline

  • Jul 18, 2024 CVE Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›