HPSBMU02786Vendor advisory
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03360041 CVE-2011-4317
Apache 7.0.x mod_proxy - Reverse Proxy Security Bypass
Record summary
CVE-2011-4317 has a selected CVSS score of 4.3; EIP currently links 1 catalogued exploit.
Description
The mod_proxy module in the Apache HTTP Server 1.3.x through 1.3.42, 2.0.x through 2.0.64, and 2.2.x through 2.2.21, when the Revision 1179239 patch is in place, does not properly interact with use of (1) RewriteRule and (2) ProxyPassMatch pattern matches for configuration of a reverse proxy, which allows remote attackers to send requests to intranet servers via a malformed URI containing an @ (at sign) character and a : (colon) character in invalid positions. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-3368.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBApache 7.0.x mod_proxy - Reverse Proxy Security BypassExploitDB exploitby Prutha ParikhNot analyzed1 file
References
Showing 12 of 48kb.juniper.netConfirmation
http://kb.juniper.net/JSA10585 APPLE-SA-2012-09-19-2Vendor advisory
http://lists.apple.com/archives/security-announce/2012/Sep/msg00004.html openSUSE-SU-2013:0243Vendor advisory
http://lists.opensuse.org/opensuse-updates/2013-02/msg00009.html openSUSE-SU-2013:0248Vendor advisory
http://lists.opensuse.org/opensuse-updates/2013-02/msg00012.html SSRT100772Vendor advisory
http://marc.info/?l=bugtraq&m=133294460209056&w=2 SSRT100966Vendor advisory
http://marc.info/?l=bugtraq&m=134987041210674&w=2 RHSA-2012:0128Vendor advisory
http://rhn.redhat.com/errata/RHSA-2012-0128.html 48551Third-party advisory
http://secunia.com/advisories/48551 support.apple.comConfirmation
http://support.apple.com/kb/HT5501 thread.gmane.orgConfirmation
http://thread.gmane.org/gmane.comp.apache.devel/46440 DSA-2405Vendor advisory
http://www.debian.org/security/2012/dsa-2405