mod_proxy_ajp.c in the mod_proxy_ajp module in the Apache HTTP Server 2.2.11 allows remote attackers to obtain sensitive response data, intended for a client that sent an earlier POST request with no request body, via an HTTP request.
References
Configurations
Information
Published : 2009-04-23 17:30
Updated : 2021-06-06 11:15
NVD link : CVE-2009-1191
Mitre link : CVE-2009-1191
JSON object : View
Products Affected
apache
- apache_http_server
CWE
CWE-20
Improper Input Validation
