Description
ap_escape_quotes() may write beyond the end of a buffer when given malicious input. No included modules pass untrusted data to these functions, but third-party / external modules may. This issue affects Apache HTTP Server 2.4.48 and earlier.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2020-2511 Vulnerability (CVE-2020-2511)
WordPress Plugin Code Snippets Cross-Site Request Forgery (2.13.3)
WordPress Plugin LearnDash LMS SQL Injection (4.5.3)
WordPress Improper Authentication Vulnerability (CVE-2008-1930)
WordPress Plugin Alpine PhotoTile for Instagram Cross-Site Scripting (1.2.7.7)