ModSecurity CRS ReDoS Vulnerability
by geshem - July 02, 2019 at 02:15 PM
#1
https://portswigger.net/daily-swig/modse...nerability

CVE-2019-11387 is yet another example of why rules / regex based WAFs are not the right approach.

Possibly Related Threads…
Thread Author Replies Views Last Post
Nginx off by slash vulnerability geshem 4 147 September 08, 2019 at 11:53 PM
Last Post: plastic
Dirty Sock vulnerability lets attackers gain root access on Linux systems umerkhan 2 336 February 19, 2019 at 03:14 PM
Last Post: j4kca
Zer0day remote code execution vulnerability for Windows 10 deneme577 12 2,879 July 05, 2017 at 02:34 AM
Last Post: DAG1234

 Users browsing this thread: 1 Guest(s)