Security Advisory

CVE-2007-1349

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2007-03-30 00:00:00
Last updated 2024-08-07 12:50:35
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

PerlRun.pm in Apache mod_perl before 1.30, and RegistryCooker.pm in mod_perl 2.x, does not properly escape PATH_INFO before use in a regular expression, which allows remote attackers to cause a denial of service (resource consumption) via a crafted URI.