httpd-bugs mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From bugzi...@apache.org
Subject [Bug 55352] <Proxy> matches even if just a prefix string is matched
Date Sun, 18 Aug 2013 16:07:57 GMT
https://issues.apache.org/bugzilla/show_bug.cgi?id=55352

Christoph Anton Mitterer <calestyo@scientia.net> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
           Severity|major                       |critical

--- Comment #1 from Christoph Anton Mitterer <calestyo@scientia.net> ---
Escalating severity, as this is IMHO quite some security problem, as it will
typically allow access to content that should not be accessible.

IMHO a CVE needs to be registered for this.

-- 
You are receiving this mail because:
You are the assignee for the bug.

---------------------------------------------------------------------
To unsubscribe, e-mail: bugs-unsubscribe@httpd.apache.org
For additional commands, e-mail: bugs-help@httpd.apache.org


Mime
View raw message