CVE-2022-28330

MEDIUM5.3EPSS 0.49%

read beyond bounds in mod_isapi

Published: 6/9/2022Modified: 5/20/2025
Also known as:ALPINE-CVE-2022-28330BIT-apache-2022-28330

Description

Apache HTTP Server 2.4.53 and earlier on Windows may read beyond bounds when configured to process requests with the mod_isapi module.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

References (5)