First published: Fri Aug 07 2020(Updated: )
IP address spoofing when proxying using mod_remoteip and mod_rewrite For configurations using proxying with mod_remoteip and certain mod_rewrite rules, an attacker could spoof their IP address for logging and PHP scripts. Note this issue was fixed in Apache HTTP Server 2.4.24 but was retrospectively allocated a low severity CVE in 2020.
Credit: security@apache.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apache HTTP server | >=2.4.1<=2.4.23 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-11985 is a vulnerability that allows IP address spoofing when proxying using mod_remoteip and mod_rewrite in Apache HTTP Server.
CVE-2020-11985 has a severity rating of 5.3 (Medium).
CVE-2020-11985 affects Apache HTTP Server versions between 2.4.1 and 2.4.23.
An attacker can exploit CVE-2020-11985 to spoof their IP address for logging and PHP scripts when using proxying with mod_remoteip and certain mod_rewrite rules.
Yes, CVE-2020-11985 was fixed in Apache HTTP Server version 2.4.24.