EXPOSURES › CVE-2024-38475
CVE-2024-38475
HIGH ⌖ ON CISA KEV · EXPLOITEDApache HTTP Server's mod_rewrite module has a vulnerability allowing attackers to potentially execute code or disclose source code via improper output escaping, and is currently being actively exploited in the wild.
A flaw in Apache HTTP Server's mod_rewrite module allows attackers to map URLs to sensitive filesystem locations, potentially leading to code execution or source code disclosure. DIB organizations using Apache must immediately patch to prevent unauthorized access and data exposure, impacting CMMC compliance requirements related to data protection. Verify patching and review configurations.
Shame score — The vulnerability's active exploitation and potential for code execution demonstrate a significant security oversight in a widely-used component.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Apache HTTP Server contains an improper escaping of output vulnerability in mod_rewrite that allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not intentionally/directly reachable by any URL, resulting in code execution or source code disclosure.