Apache Httpd 2222 Exploit Fixed

Port 2222 is widely used as a secure alternative port for:

If you are auditing a legacy 2.2.22 server, the most likely exploits are: CVE-2011-3192 (Range Header DoS)

No. No credible CVE or advisory from Apache Software Foundation ever references port 2222 as a vector. apache httpd 2222 exploit

The malware authors use port 2222 because it is often overlooked by administrators who assume it is "just the DirectAdmin panel" or a development environment.

2. Common Vulnerabilities Associated with Older Apache Instances Port 2222 is widely used as a secure

The server attempts to process these overlapping ranges, consuming massive amounts of memory and CPU, eventually leading to a crash or total unresponsiveness. 2. Mod_proxy Header Injection (CVE-2011-4317)

You're referring to the Apache HTTP Server vulnerability known as "HTTPD 2.2.22 Exploit" or more formally as CVE-2012-3552. apache httpd 2222 exploit

: A security bypass vulnerability was found in the mod_session module. This could allow an attacker to reuse a session id that was already used.