← back
CVE-2019-0217

CVE-2019-0217

EPSS 16.6%
In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded server could allow a user with valid credentials to authenticate using another username, bypassing configured access control restrictions.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →