Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-40898
HistoryJul 18, 2024 - 12:00 a.m.

CVE-2024-40898

2024-07-1800:00:00
ubuntu.com
ubuntu.com
8
ssrf
vulnerability
windows

AI Score

6.3

Confidence

Low

EPSS

0.001

Percentile

34.9%

SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost
context, allows to potentially leak NTML hashes to a malicious server via
SSRF and malicious requests.
Users are recommended to upgrade to version 2.4.62 which fixes this issue.

Notes

Author Note
mdeslaur windows-specific issue