Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-31813
HistoryJun 09, 2022 - 5:15 p.m.

Design/Logic Flaw

2022-06-0917:15:00
PRIOn knowledge base
www.prio-n.com
18

9.5 High

AI Score

Confidence

High

0.01 Low

EPSS

Percentile

84.0%

Apache HTTP Server 2.4.53 and earlier may not send the X-Forwarded-* headers to the origin server based on client side Connection header hop-by-hop mechanism. This may be used to bypass IP based authentication on the origin server/application.

CPENameOperatorVersion
http_serverle2.4.53
fedoraeq35
fedoraeq36