Description
The mod_headers module in the Apache HTTP Server 2.2.22 allows remote attackers to bypass "RequestHeader unset" directives by placing a header in the trailer portion of data sent with chunked transfer coding. NOTE: the vendor states "this is not a security issue in httpd as such."
Remediation
References
Related Vulnerabilities
WordPress Plugin Uncanny Toolkit for LearnDash Cross-Site Request Forgery (3.6.4.1)
WordPress Plugin WP Maps-Display Google Maps Perfectly with Ease SQL Injection (4.1.4)
Jboss EAP CVE-2013-1896 Vulnerability (CVE-2013-1896)
Oracle Database Server CVE-2012-0511 Vulnerability (CVE-2012-0511)
Artifactory Exposure of Resource to Wrong Sphere Vulnerability (CVE-2021-46687)