VYPR
Medium severity5.3NVD Advisory· Published Aug 7, 2020· Updated Jun 17, 2026

CVE-2020-11985

CVE-2020-11985

Description

IP address spoofing when proxying using mod_remoteip and mod_rewrite For configurations using proxying with mod_remoteip and certain mod_rewrite rules, an attacker could spoof their IP address for logging and PHP scripts. Note this issue was fixed in Apache HTTP Server 2.4.24 but was retrospectively allocated a low severity CVE in 2020.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

22

Patches

Vulnerability mechanics

References

16

News mentions

0

No linked articles in our index yet.