Apache 7.0.x mod_proxy - Reverse Proxy Security Bypass
Author: Prutha Parikh
type: remote
platform: linux
port:
date_added: 2011-11-24
date_updated: 2017-01-31
verified: 1
codes: CVE-2011-4317;OSVDB-77310
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/50802/info
Apache HTTP Server is prone to a security-bypass vulnerability.
Successful exploits will allow attackers to bypass certain security restrictions and obtain sensitive information about running web applications.
The following example patterns are available:
RewriteRule ^(.*) http://www.example.com$1
ProxyPassMatch ^(.*) http://www.example.com$1