Security restrictions bypass in Apache Traffic Server - CVE-2018-8004
Published: August 30, 2018
Apache Traffic Server
Detailed vulnerability description
The vulnerability allows a remote attacker to bypass security restrictions on the target system.
The vulnerability exists due to multiple HTTP smuggling and cache poisoning issues when clients make malicious requests. A remote attacker can send a specially crafted request and bypass security restrictions to conduct further attacks.