Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-03225
HistorySep 18, 2021 - 12:00 a.m.

Apache HTTP Server ap_escape_quotes buffer overflow vulnerability

2021-09-1800:00:00
China National Vulnerability Database
www.cnvd.org.cn
1147

0.006 Low

EPSS

Percentile

79.5%

Apache HTTP Server is an open source web server from the Apache Foundation. The server is fast, reliable, and extensible via a simple API. buffer overflow vulnerability exists in Apache HTTP Server versions 2.4.48 and earlier, which stems from the possibility that ap_escape_quotes() may write content outside of the buffer when given malicious input. An attacker could exploit this vulnerability to write malicious content and execute it.

CPENameOperatorVersion
apache http serverle2.4.48