Sources : US Cert, Cert EU, Cert FR, Cnil, VulDB.

lundi 6 avril 2020

Apache Web Server Vulnerability (CERT-EU Security Advisory 2020-019)

On the 1st of April 2020, a new vulnerability was made public related to Apache Web server. Apache HTTP Server is prone to an open-redirection vulnerability because it fails to properly validate the redirect URLs. Specifically, this issue affects the "mod_rewrite" configurations. An attacker can leverage this issue by constructing a crafted URI and target a user to follow it.

Auteur: Cert EU

