CVE-2020-11984
07.08.2020, 16:15
Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible RCE
Vendor | Product | Version |
---|---|---|
apache | http_server | 2.4.32 ≤ 𝑥 ≤ 2.4.43 |
netapp | clustered_data_ontap | - |
canonical | ubuntu_linux | 16.04 |
canonical | ubuntu_linux | 18.04 |
canonical | ubuntu_linux | 20.04 |
debian | debian_linux | 9.0 |
debian | debian_linux | 10.0 |
opensuse | leap | 15.1 |
opensuse | leap | 15.2 |
oracle | communications_element_manager | 8.2.0 ≤ 𝑥 ≤ 8.2.2 |
oracle | communications_session_report_manager | 8.2.0 ≤ 𝑥 ≤ 8.2.2 |
oracle | communications_session_route_manager | 8.2.0 ≤ 𝑥 ≤ 8.2.2 |
oracle | enterprise_manager_ops_center | 12.4.0.0 |
oracle | hyperion_infrastructure_technology | 11.1.2.4 |
oracle | instantis_enterprisetrack | 17.1 |
oracle | instantis_enterprisetrack | 17.2 |
oracle | instantis_enterprisetrack | 17.3 |
oracle | zfs_storage_appliance_kit | 8.8 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
apache2 |
| ||||||||||||||
uwsgi |
|

Ubuntu Releases
Ubuntu Product | |||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
apache2 |
| ||||||||||||||||
uwsgi |
|
References