5.3
CVSSv3

CVE-2022-28330

Published: 09/06/2022 Updated: 24/06/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Apache HTTP Server 2.4.53 and previous versions on Windows may read beyond bounds when configured to process requests with the mod_isapi module.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache http_server

Vendor Advisories

Debian Bug report logs - #1012513 apache2: CVE-2022-31813 CVE-2022-26377 CVE-2022-28614 CVE-2022-28615 CVE-2022-29404 CVE-2022-30522 CVE-2022-30556 Package: src:apache2; Maintainer for src:apache2 is Debian Apache Maintainers <debian-apache@listsdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Wed, ...
Synopsis Moderate: Red Hat JBoss Core Services Apache HTTP Server 2451 SP1 security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update is now available for Red Hat JBoss Core ServicesRed Hat Product Securi ...
Synopsis Important: Red Hat JBoss Core Services Apache HTTP Server 2451 SP1 security update Type/Severity Security Advisory: Important Topic An update is now available for Red Hat JBoss Core ServicesRed Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (CVSS) base sco ...
An HTTP request smuggling vulnerability was found in the mod_proxy_ajp module of httpd This flaw allows an attacker to smuggle requests to the AJP server, where it forwards requests (CVE-2022-26377) An out-of-bounds read vulnerability was found in the mod_isapi module of httpd The issue occurs when httpd is configured to process requests with th ...
An HTTP request smuggling vulnerability was found in the mod_proxy_ajp module of httpd This flaw allows an attacker to smuggle requests to the AJP server, where it forwards requests (CVE-2022-26377) An out-of-bounds read vulnerability was found in the mod_isapi module of httpd The issue occurs when httpd is configured to process requests with th ...
An HTTP request smuggling vulnerability was found in the mod_proxy_ajp module of httpd This flaw allows an attacker to smuggle requests to the AJP server, where it forwards requests (CVE-2022-26377) An out-of-bounds read vulnerability was found in the mod_isapi module of httpd The issue occurs when httpd is configured to process requests with th ...
An HTTP request smuggling vulnerability was found in the mod_proxy_ajp module of httpd This flaw allows an attacker to smuggle requests to the AJP server, where it forwards requests (CVE-2022-26377) An out-of-bounds read vulnerability was found in the mod_isapi module of httpd The issue occurs when httpd is configured to process requests with th ...