Vulnerability Database

296,138

Total vulnerabilities in the database

CVE-2014-0117

The mod_proxy module in the Apache HTTP Server 2.4.x before 2.4.10, when a reverse proxy is enabled, allows remote attackers to cause a denial of service (child-process crash) via a crafted HTTP Connection header.

  • Published: Jul 20, 2014
  • Updated: Apr 13, 2023
  • CVE: CVE-2014-0117
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:N/I:N/A:P

CWEs:

Software From Fixed in
apache / http_server 2.4.6 2.4.6.x
apache / http_server 2.4.8 2.4.8.x
apache / http_server 2.4.7 2.4.7.x
apache / http_server 2.4.9 2.4.9.x
apple / mac_os_x - 10.10.2.x