摘要:
A crafted method sent through HTTP/2 will bypass validation and be forwarded by mod_proxy, which can lead to request splitting or cache poisoning. This issue affects Apache HTTP Server 2.4.17 to 2.4.48.
安全等级: Low
公告ID: KylinSec-SA-2021-1735
发布日期: 2021年9月4日
关联CVE: CVE-2021-33193
A crafted method sent through HTTP/2 will bypass validation and be forwarded by mod_proxy, which can lead to request splitting or cache poisoning. This issue affects Apache HTTP Server 2.4.17 to 2.4.48.
cve名称 | 产品 | 组件 | 是否受影响 |
---|---|---|---|
CVE-2021-33193 | KY3.4-4A | httpd | Unaffected |