Description
IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request.
Remediation
References
Related Vulnerabilities
WordPress Plugin WORDPRESS VIDEO GALLERY Multiple Vulnerabilities (2.3.1)
WordPress Plugin Simple Fields Local File Inclusion (0.3.5)
axios Server-Side Request Forgery (SSRF) Vulnerability (CVE-2020-28168)
Mailman Other Vulnerability (CVE-2005-0080)
WordPress Plugin Virtual Robots.txt Cross-Site Scripting (1.9)