Description
HTTP response splitting vulnerability in multiple Apache HTTP Server modules with untrusted or compromised backend servers. This issue affects Apache HTTP Server: from through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.
Remediation
References
Related Vulnerabilities
Dot CMS Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-11466)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-32472)
Undertow CVE-2022-1259 Vulnerability (CVE-2022-1259)
Oracle Application Server CVE-2009-0990 Vulnerability (CVE-2009-0990)
Drupal Deserialization of Untrusted Data Vulnerability (CVE-2019-6340)