CVE-2021-41773 & CVE-2021-42013
ID: 3ae7bcce-dfaa-5527-9fc8-fd81dc339af2
STIX ID: report--3ae7bcce-dfaa-5527-9fc8-fd81dc339af2
Feed Name: Arctic Wolf Blog
Threat Score
Apache HTTP Server versions 2.4.49 and 2.4.50 contain a path traversal vulnerability (CVE-2021-41773) and a related, critical remote code execution vulnerability (CVE-2021-42013, CVSS 9.8) that has been observed exploited in the wild; Apache released 2.4.51 to remediate both issues and recommends upgrading and verifying access control (Require directives) and CGI exposure to mitigate risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
