Description
SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests. Users are recommended to upgrade to version 2.4.62 which fixes this issue.
Remediation
References
Related Vulnerabilities
Envoy Proxy Integer Underflow (Wrap or Wraparound) Vulnerability (CVE-2024-32975)
WordPress Plugin Vodpod Video Gallery 'gid' Parameter Cross-Site Scripting (3.1.5)
XWiki Improper Encoding or Escaping of Output Vulnerability (CVE-2020-13654)
Drupal Core 4.7.x HTTP Response Splitting (4.7.0 - 4.7.7)
WordPress Plugin Advanced Forms for ACF Pro Security Bypass (1.6.8)