Kaspersky ID:
KLA12366
Дата обнаружения:
14/08/2019
Обновлено:
22/01/2024

Описание

Multiple vulnerabilities were found in Apache HTTP Server. Malicious users can exploit these vulnerabilities to cause denial of service, perform cross-site scripting attack, spoof user interface.

Below is a complete list of vulnerabilities:

  1. Memory corruption vulnerability in mod_http2 can be exploited to cause denial of service.
  2. Stack buffer overflow vulnerability in mod_remoteip can be exploited via special crafted PROXY header to cause denial of service.
  3. Cross-site scripting (XSS) vulnerability in mod_proxy error page can be exploited to perform cross-site scripting attack.
  4. Use after free vulnerability in mod_http2 can be exploited to cause denial of service.
  5. Denial of service vulnerability in mod_http2 can be exploited to cause denial of service.
  6. Security UI vulnerability in mod_rewrite can be exploited to spoof user interface.

Первичный источник обнаружения

Эксплуатация

Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.

Связанные продукты

Список CVE

  • CVE-2019-10092
    warning
  • CVE-2019-10081
    warning
  • CVE-2019-10097
    high
  • CVE-2019-10082
    high
  • CVE-2019-9517
    critical
  • CVE-2019-10098
    high

Смотрите также

Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com

Нашли неточность в описании этой уязвимости? Дайте нам знать!
Встречай новый Kaspersky!
Каждая минута твоей онлайн-жизни заслуживает топовой защиты.
Узнать больше
Kaspersky IT Security Calculator:
Оцените ваш профиль кибербезопасности
Узнать больше
Confirm changes?
Your message has been sent successfully.