The mod_dosevasive module 1.9 and earlier for Apache creates temporary files with predictable filenames, which could allow remote attackers to overwrite arbitrary files via a symlink attack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mod_dosevasive | Mod_dosevasive | 1.8 (including) | 1.8 (including) |
Mod_dosevasive | Mod_dosevasive | 1.9 (including) | 1.9 (including) |