Description
This alert was generated using only banner information. It may be a false positive.
Fixed in Apache httpd 2.2.9:
-
low: mod_proxy_balancer CSRF CVE-2007-6420
The mod_proxy_balancer provided an administrative interface that could be vulnerable to cross-site request forgery (CSRF) attacks. -
moderate: mod_proxy_http DoS CVE-2008-2364
A flaw was found in the handling of excessive interim responses from an origin server when using mod_proxy_http. A remote attacker could cause a denial of service or high memory usage.
Affected Apache versions (2.2.8, 2.2.6, 2.2.5, 2.2.4, 2.2.3, 2.2.2, 2.2.0).
Remediation
Upgrade Apache 2.x to the latest version.
References
Related Vulnerabilities
WordPress 4.3.x Multiple Vulnerabilities (4.3 - 4.3.26)
MySQL CVE-2019-2632 Vulnerability (CVE-2019-2632)
WordPress Plugin WP Customer Reviews Cross-Site Scripting (3.5.5)
WordPress Plugin FCChat Widget 'path' Parameter Cross-Site Scripting (2.1.7)
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (6.0.3.3)