Toggle navigation
Dashboard
Dashboard Tracker
Add / Edit My Forums
System Announcements
Discussion
Active Thread Feed
Top Threads Today
Top Threads This Week
Top Threads Library
Go!
View All
View All
Login
Logout
Home
Forums Index
Server Side
/
Apache Web Server
12:00 am Jul 31, 2026
This page requires javascript.
Forum Moderators:
phranque
Message Too Old, No Replies
latest Apache struts security issue
fuzzy17
Msg#:4839444
2:48 pm on Mar 9, 2017
(gmt 0)
We don't run Snort, so is there a way to block cmd.exe in a header with Apache 2.2 (I know we are on IBM HTTP Server, which is based on 2.2)?
[
isc.sans.edu
...]
fuzzy17
Msg#:4842030
1:40 pm on Mar 28, 2017
(gmt 0)
Well,I think
RewriteCond "%{Content-Type}" "*.cmd.*"
RewriteRule .* - [F]
engine
Msg#:4842038
2:24 pm on Mar 28, 2017
(gmt 0)
Was it this one? [
webmasterworld.com
...]
phranque
Msg#:4842283
11:32 pm on Mar 29, 2017
(gmt 0)
Was it this one?
yes, that's the same exploit.
there are additional solutions/workarounds mentioned in the apache.org article referenced in that other thread.
Join The Conversation
Register
For Free! -
Become a
Pro Member
!
See forum categories
-
Enter the Forum
Moderators and Top Contributors
Moderator List
| Top Contributors:
This Week
,
This Month
,
Jun
,
May
,
Archive
,
Top 100 All Time
,
Top Voted Members
Hot Threads This Week
July 2026 Google Search Observations
Google hit with $1 billion EU fine for breach of the digital act
Do LLMs actually read your schema?
Annoying Crawler, Bot, or what?
Do you still build external links in 2026?
Google started experiment; auto optimise turned off
SkypeUriPreview - links pasted into MS 365 Outlook
Home
Forums Index
Server Side
/
Apache Web Server
12:00 am Jul 31, 2026