Back to search
CVE-2021-33193
Published: Aug 16, 2021
Modified: Aug 3, 2024
PUBLISHED
Description
A crafted method sent through HTTP/2 will bypass validation and be forwarded by mod_proxy, which can lead to request splitting or cache poisoning. This issue affects Apache HTTP Server 2.4.17 to 2.4.48.
| Vendor | Product | Versions |
|---|---|---|
Apache Software Foundation | Apache HTTP Server | affected Apache HTTP Server 2.4 2.4.17 to 2.4.48 |
References
FEDORA-2021-5d2d4b6ac5
vendor-advisory
FEDORA-2021-f94985afca
vendor-advisory
GLSA-202208-20
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now