Apache Mod ReWrite Rules Bypassing...

- AV AC AU C I A
发布: 2001-08-12
修订: 2025-04-13

Apache is a freely available, widely used web server distributed and maintained by the Apache Server Project. It is possible to bypass mod_rewrite rules if the rules are constructed in a certain way, such as: RewriteCond %{HTTP_REFERER} !^http://www\.yoursite\.com.*$ RewriteRule ^/images/.* - [G] This does not filter requests for the //images directory, and could allow a remote site to link images, resulting in increased hosting costs, and potentially a denial of service.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息