Description
It's possible to view the source code of CGI scripts via a POST request made to a directory where WebDAV and CGI are enabled.
Affected Apache versions (up to 2.0.42).
Remediation
Upgrade Apache 2.x to the latest version.
References
Related Vulnerabilities
PHP Use After Free Vulnerability (CVE-2017-12932)
Atlassian Jira CVE-2019-20404 Vulnerability (CVE-2019-20404)
WordPress 4.6.x Multiple Vulnerabilities (4.6 - 4.6.6)
WordPress Plugin Ultimate Google Analytics Cross-Site Request Forgery (1.6.0)
WordPress Plugin WP Advanced Comment Cross-Site Scripting (0.10)