Vulnerability in Apache HTTP Server 2.4.49 allowing access to files outside the site root.
An emergency update to the Apache HTTP server 2.4.50 has been formed, which fixes an actively exploited zero-day vulnerability (CVE-2021-41773) that allows access to files outside the website's root directory. This vulnerability can be used to upload arbitrary system files and source texts of web scripts that are accessible for reading by the user under which the HTTP server is running. Developers were notified of the issue back on the 17th […]
