|
|
| |
| ModSecurity is prone to a security-bypass vulnerability because it fails to sufficiently sanitize user-supplied input. |
| |
Credit:
The information has been provided by Bernhard Mueller.
|
| |
Vulnerable Systems:
* ModSecurity 2.6.8
Successful exploits can allow attackers to bypass filtering rules; this may aid in further attacks.
Exploit/Poc:
An attacker can exploit this issue using standard tools.
The following example data is available:
http://downloads.securityfocus.com/vulnerabilities/exploits/56096.txt
CVE Information:
CVE-2012-4528
Disclosure Timeline:
Published: October 17 2012
Updated: November 23 2012
|
|
blog comments powered by
|