RULE(RULE ID:336971)

Rule General Information
Release Date: 2022-08-18
Rule Name: Apache SSI Remote Code Execution Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: SSI (Server Side Includes) is an instruction in an HTML page that is processed by the server when the page is provided to add dynamically generated content to an existing HTML page, without the need to provide its entire page through CGI programs or use other dynamic techniques. Apache SSI has a vulnerability that attackers can exploit to achieve code injection and execution.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.