CVE-2023-24021
Last modified
CVE-2023-24021 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Incorrect handling of '\0' bytes in file uploads in ModSecurity before 2.9.7 may allow for Web Application Firewall bypasses and buffer over-reads on the Web Application Firewall when executing rules that read the FILES_TMP_CONTENT collection.. EPSS estimates a 0.91% chance of exploitation in the next 30 days.
Description
Incorrect handling of '\0' bytes in file uploads in ModSecurity before 2.9.7 may allow for Web Application Firewall bypasses and buffer over-reads on the Web Application Firewall when executing rules that read the FILES_TMP_CONTENT collection.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Trustwave | Modsecurity | < 2.9.7 |
| Debian | Debian Linux | 10.0 |
References
- https://github.com/SpiderLabs/ModSecurity/pull/2857Issue Tracking, Patch
- https://lists.debian.org/debian-lts-announce/2023/01/msg00023.htmlMailing List, Third Party Advisory
- https://github.com/SpiderLabs/ModSecurity/pull/2857Issue Tracking, Patch
- https://lists.debian.org/debian-lts-announce/2023/01/msg00023.htmlMailing List, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-24021?
How severe is CVE-2023-24021?
How do I fix CVE-2023-24021?
Are you affected by CVE-2023-24021?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
