Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-03205
HistorySep 18, 2021 - 12:00 a.m.

Apache HTTP Server Denial of Service Vulnerability (CNVD-2022-03205)

2021-09-1800:00:00
China National Vulnerability Database
www.cnvd.org.cn
16

0.002 Low

EPSS

Percentile

55.8%

Apache HTTP Server is an open source web server from the Apache Foundation. Apache HTTP Server versions 2.4.30 to 2.4.48 contain a denial-of-service vulnerability that stems from a network system or product that does not properly validate incoming data. An attacker could exploit this vulnerability with a carefully crafted request uri path that could cause mod_proxy_uwsgi to read the allocated memory and crash.

CPENameOperatorVersion
Apache HTTP Server >=2.4.30,le2.4.48