Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap-based buffer overflow in the sec_filter_out function in mod_security 1.7RC1 through 1.7.1 in Apache 2 allows remote attackers to execute arbitrary code via a server side script that sends a large amount of data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache Mod_Security模块堆破坏漏洞
Vulnerability Description
ModSecurity是Trustwave's SpiderLabs团队开发的一款Web应用防火墙(WAF)。作为WEB可嵌入到WEB服务器上使用。 ModSecurity 1.7RC1至1.7.1不正确处理通过服务器端脚本传送的大量数据,远程攻击者可以利用这个漏洞破坏应用服务进程的堆结构,可能导致以WEB进程权限在系统上执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A