Security Advisory

CVE-2021-40438

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-09-16 14:40:23
Last updated 2026-08-01 03:55:29
Assigner apache
CVSS score not scored
State PUBLISHED

Description

A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.