Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
mod_proxy in httpd in Apache HTTP Server 2.2.9, when running on Unix, does not close the backend connection if a timeout occurs when reading a response from a persistent connection, which allows remote attackers to obtain a potentially sensitive response intended for a different client in opportunistic circumstances via a normal HTTP request. NOTE: this is the same issue as CVE-2010-2068, but for a different OS and set of affected versions.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache HTTP Server 信息泄露漏洞
Vulnerability Description
Apache HTTP Server是美国阿帕奇(Apache)基金会的一款开源网页服务器。该服务器具有快速、可靠且可通过简单的API进行扩充的特点。 Apache HTTP Server 2.2.9版本存在信息泄露漏洞。在Unix平台上运行时,当从一个持久连接阅读一个响应,如果发生超时,mod_proxy不能关闭后端连接,远程攻击者可以在有利情况下借助正常的HTTP请求,获取发送给不同客户的潜在敏感响应。
CVSS Information
N/A
Vulnerability Type
N/A