← Back

CVE-2024-38475

Published: Jul 1, 2024Modified: Jun 17, 2026CISA KEV

JSON object

Loading...
9.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Exploitability: 3.9 / Impact: 5.2
Source: NVD

Description

Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not intentionally/directly reachable by any URL, resulting in code execution or source code disclosure. Substitutions in server context that use a backreferences or variables as the first segment of the substitution are affected.  Some unsafe RewiteRules will be broken by this change and the rewrite flag "UnsafePrefixStat" can be used to opt back in once ensuring the substitution is appropriately constrained.

Affected (7)

1 product
Http Server
1 product
Ontap 9
5 products
Sma 200 Firmware
Sma 210 Firmware
Sma 400 Firmware
Sma 410 Firmware
Sma 500v Firmware
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 2.4.0 to 2.4.60
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 10.2.1.14-75sv
Running on/withPlatform Versions
Sonicwall
Sma 200
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 10.2.1.14-75sv
Running on/withPlatform Versions
Sonicwall
Sma 210
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 10.2.1.14-75sv
Running on/withPlatform Versions
Sonicwall
Sma 400
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 10.2.1.14-75sv
Running on/withPlatform Versions
Sonicwall
Sma 410
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 10.2.1.14-75sv
Running on/withPlatform Versions
Sonicwall
Sma 500v
All versions

References (9)

Source: security@apache.org
Vendor Advisory
Source: security@apache.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.