Apache mod_digest Client-Supplied...

- AV AC AU C I A
发布: 2004-02-03
修订: 2025-04-13

Patches have been released for the Apache mod_digest module to include digest replay protection. The module reportedly did not adequately verify client-supplied nonces against the server issued nonce. This could permit a remote attacker to replay the response of another website or section of the same website under some circumstances. It should be noted that this issue does not exist in mod_auth_digest module.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息