Skip to content
Noroxi

mod security records

3 published records for vendor mod security.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      Attack profile

      All records

      3 records
      • CVE-2004-1765
        31Monitor

        Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apache 2.x, when SecFilterScanPost is enabled, allows remote attackers to

        HighCVSS 7.5No exploitEPSS 5%

        mod security · mod securityDec 31, 2004

      • CVE-2003-1171
        31Monitor

        Heap-based buffer overflow in the sec_filter_out function in mod_security 1.7RC1 through 1.7.1 in Apache 2 allows remote attackers to execut

        HighCVSS 7.5No exploitEPSS 5%

        mod security · mod securityDec 31, 2003

      • CVE-2007-1359
        29Monitor

        Interpretation conflict in ModSecurity (mod_security) 2.1.0 and earlier allows remote attackers to bypass request rules via application/x-ww

        MediumCVSS 6.8Proof of conceptEPSS 7%

        mod security · mod securityMar 8, 2007