CVE-2023-24021
—CVSS 3.1
7.5 high
EPSS
<1%p58
Published
()
Modified
Description
Incorrect handling of '\0' bytes in file uploads in ModSecurity before 2.9.7 may allow for Web Application Firewall bypasses and buffer over-reads on the Web Application Firewall when executing rules that read the FILES_TMP_CONTENT collection.
In the news0 stories
No ingested article mentions this CVE yet.