Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:19627
HistoryMay 16, 2019 - 3:21 a.m.

Privilege Escalation

2019-05-1603:21:43
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

0.002 Low

EPSS

Percentile

57.5%

Apache HTTP Server is vulnerable to privilege escalation vulnerability. The vulnerability exists due to an improper input validation flaw in an unknown code block of the component mod_sessionin in the way it handles HTTP session headers in some configurations. A remote attacker could influence their content by using a “Session” header impacting confidentiality, integrity and availability.

References