Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2021-40438 | Kitploit
Tools/GitHubGitHub/xiaojiangxl/cve-2021-40438
ReconnaissanceVulnerability AnalysisExploitationWeb SecurityPenetration Testing
GitHubxiaojiangxl/cve-2021-40438

CVE-2021-40438

View Repository
524 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2021-40438

Requesting a uri-path can cause mod_proxy to forward the request to an origin server selected by a remote user. This issue affects Apache HTTP Server 2.4.48 and earlier versions.

Attackers can exploit this vulnerability by crafting a request with a uri-path, which causes mod_proxy to forward the request to an origin server chosen by the attacker. The mod_proxy component of Apache HTTP Server is designed to implement proxy/gateway functionality for Apache HTTP Server.

Apache <= 2.4.48 - Mod_Proxy SSRF

Solution

This vulnerability was disclosed as part of the security update bulletin for Apache HTTP Server 2.4.49, which fixed the issue. Affected systems should immediately upgrade to the latest version 2.4.49.

Download Tool