Apache mod_security security vulnerabilities
SecurityVulns ID:13009
Threat Level:
Description:Local files access, resources exhausiton.
Affected:APACHE : mod_security 2.6
CVE:CVE-2013-1915 (ModSecurity before 2.7.3 allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via an XML external entity declaration in conjunction with an entity reference, aka an XML External Entity (XXE) vulnerability.)
Original documentdocumentDEBIAN, [SECURITY] [DSA 2659-1] libapache-mod-security security update (15.04.2013)

