Skip to content
COOEY

EXPOSURES › CVE-2024-38475

CVE-2024-38475

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2025-05-01 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2024-38475 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 72/100 rceexploited-in-wildunpatched

Apache HTTP Server's mod_rewrite module has a vulnerability allowing attackers to potentially execute code or disclose source code via improper output escaping, and is currently being actively exploited in the wild.

A flaw in Apache HTTP Server's mod_rewrite module allows attackers to map URLs to sensitive filesystem locations, potentially leading to code execution or source code disclosure. DIB organizations using Apache must immediately patch to prevent unauthorized access and data exposure, impacting CMMC compliance requirements related to data protection. Verify patching and review configurations.

Shame score — The vulnerability's active exploitation and potential for code execution demonstrate a significant security oversight in a widely-used component.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Apache HTTP Server contains an improper escaping of output vulnerability in mod_rewrite that allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not intentionally/directly reachable by any URL, resulting in code execution or source code disclosure.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.