modwsgi mod_wsgi 4.1.0

CPE Details

modwsgi mod_wsgi 4.1.0
4.1.0
2014-05-28
15h57 +00:00
2014-05-30
15h56 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:modwsgi:mod_wsgi:4.1.0:*:*:*:*:*:*:*

Informations

Vendor

modwsgi

Product

mod_wsgi

Version

4.1.0

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2022-2255 2022-08-25 15h26 +00:00 A vulnerability was found in mod_wsgi. The X-Client-IP header is not removed from a request from an untrusted proxy, allowing an attacker to pass the X-Client-IP header to the target WSGI application because the condition to remove it is missing.
7.5
Haute
CVE-2014-8583 2014-12-16 17h00 +00:00 mod_wsgi before 4.2.4 for Apache, when creating a daemon process group, does not properly handle when group privileges cannot be dropped, which might allow attackers to gain privileges via unspecified vectors.
6.9