← Back

CVE-2021-37150

nvd nist
Published: Aug 10, 2022Modified: Sep 8, 2025

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Improper Input Validation vulnerability in header parsing of Apache Traffic Server allows an attacker to request secure resources. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

Affected (6)

1 product
Traffic Server
1 product
Debian Linux
1 product
Fedora
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Apache
From 8.0.0 to 8.1.4
From 9.0.0 to 9.1.2
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 10.0
Version 11.0
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 35
Version 36

Timeline

No history available yet.