Remote Code Execution Vulnerability in ModSecurity 1.7.4 for Apache 2.x

Remote Code Execution Vulnerability in ModSecurity 1.7.4 for Apache 2.x

CVE-2004-1765 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apache 2.x, when SecFilterScanPost is enabled, allows remote attackers to execute arbitrary code via crafted POST requests.

Learn more about our Cis Benchmark Audit For Apache Http Server.