Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The multipart processor in ModSecurity before 2.5.9 allows remote attackers to cause a denial of service (crash) via a multipart form datapost request with a missing part header name, which triggers a NULL pointer dereference.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ModSecurity 代码问题漏洞
Vulnerability Description
ModSecurity是一个入侵检测、阻止的引擎可以作为Apache Web服务器的一个模块或单独的应用程序来运行,为增强Web应用程序的安全性和保护Web应用程序避免遭受来自已知与未知的攻击。 ModSecurity 2.5.9之前存在代码问题漏洞,该漏洞源于多部分处理器允许远程攻击者通过丢失部分头名的多部分表单的datapost请求导致拒绝服务(崩溃),这将触发空指针解引用。
CVSS Information
N/A
Vulnerability Type
N/A