Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-39573


Potential SSRF in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to cause unsafe RewriteRules to unexpectedly setup URL's to be handled by mod_proxy. Users are recommended to upgrade to version 2.4.60, which fixes this issue.


Published

2024-07-01T19:15:05.760

Last Modified

2025-07-01T20:25:56.240

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application apache http_server < 2.4.60 Yes
Application netapp ontap 9 Yes

References