Description
Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before 2.0.59, and 2.2, when RewriteEngine is enabled, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted URLs that are not properly handled using certain rewrite rules.
Remediation
References
Related Vulnerabilities
WordPress Plugin WooCommerce PDF Invoices & Packing Slips Cross-Site Scripting (2.0.12)
ownCloud Files or Directories Accessible to External Parties Vulnerability (CVE-2015-4715)
WordPress 5.5.x Multiple Vulnerabilities (5.5 - 5.5.11)
Oracle JRE CVE-2012-3159 Vulnerability (CVE-2012-3159)
WordPress Plugin Form Builder CP Cross-Site Scripting (1.2.31)