Description
In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_mime can read one byte past the end of a buffer when sending a malicious Content-Type response header.
Remediation
References
Related Vulnerabilities
WordPress Plugin Spider Calendar Cross-Site Scripting (1.1.0)
WordPress Plugin Survey Maker-Best WordPress Survey Cross-Site Scripting (2.0.6)
WordPress Plugin MediaPress Security Bypass (1.1.9)
TCExam Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2020-5743)
WordPress Plugin Photospace Responsive Gallery Unspecified Vulnerability (1.1.7)