|
New Apache Reverse Proxy Issue Uncovered |
|
|
|
Source: ThreatPost - Posted by Anthony Pell
|
A new reverse proxy issue affecting Apache HTTP server can be used by attackers to access internal systems if certain rules are improperly configured, a security researcher said.
Prutha Parikh, vulnerability signature engineer at Qualys, blogged that she uncovered the issue while creating a QualysGuard vulnerability signature for another reverse proxy issue, detailed in CVE-2011-3368. While reviewing the patch for the older bug, she discovered it was still possible to use a crafted request to exploit a fully-patched Apache Web Server.
Read this full article at ThreatPost
Only registered users can write comments. Please login or register. Powered by AkoComment! |