Check Point Reference: | CPAI-2014-1850 |
Date Published: | 22 Oct 2014 |
Severity: | High |
Last Updated: | Wednesday 22 October, 2014 |
Source: | |
Industry Reference: | CVE-2013-5705 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | Trustwave: SpiderLabs ModSecurity prior to 2.7.6 |
Vulnerability Description | A policy bypass vulnerability has been reported in ModSecurity that could allow remote attackers to bypass Web Application Firewall (WAF) filters. The vulnerability is due to improper comparison of the user supplied input of the HTTP Transfer-encoding header field. A remote, unauthenticated attacker could exploit this vulnerability by sending a crafted HTTP request to send malicious payloads and bypass firewall filter policies. |
SmartView Tracker will log the following entries:
Attack Name: Web Server Enforcement Violation.
Attack Information: Trustwave Holdings ModSecurity Chunked Transfer Encoding Policy Bypass