CVE-2019-0215

All FrameworksApache HTTPDCWE-OtherCVE-2019-0215

CVE-2019-0215

State: PUBLISHED · Published: 2019-04-08 · Updated: 2024-08-04 · Assigner: apache
Description
In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verification with TLSv1.3 allowed a client to bypass configured access control restrictions.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2019/0xxx/CVE-2019-0215.json