Description
mod_cgid in Apache before 2.0.48, when using a threaded MPM, does not properly handle CGI redirect paths, which could cause Apache to send the output of a CGI program to the wrong client.
Remediation
References
Related Vulnerabilities
Moodle Improper Privilege Management Vulnerability (CVE-2018-1134)
WordPress Plugin Social Essentials-Social Stats and Sharing Buttons Cross-Site Scripting (1.3.1)
Contao Deserialization of Untrusted Data Vulnerability (CVE-2014-1860)
WordPress Plugin Slimstat Analytics Cross-Site Scripting (5.0.4)
Claroline Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3716)