CVE-2022-37392


Apache Traffic Server: Improperly reading the client requests

Improper Check for Unusual or Exceptional Conditions vulnerability in handling the requests to Apache Traffic Server. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.



We have discovered 321 live websites that are affected by CVE-2022-37392.

Contact us to get more info




Affected Software

Product  ATS
Category Web Servers
Vulnerable Versions
  • from 8 through 9.1.3
Total Vulnerable Versions41
Vulnerable Domains321 live websites (19.10% of ATS install base)


Common Weakness Enumeration


CWE-754 Improper Check for Unusual or Exceptional Conditions


Distribution by Website Rank

The diagram provides a graphic representation of the correlation between the occurrence of CVE-2022-37392 and the relative popularity of websites


Details

  • Published - Dec 19, 2022

Credits

  • Menno de Gier (finder)





Countries

United States26 websites



Germany196 websites
Italy28 websites
GB18 websites
France15 websites
Finland11 websites
Russia10 websites
Netherlands6 websites
2 websites
Japan2 websites

TLDs

.info91 websites
.com48 websites
.de18 websites
.it18 websites
.org12 websites
.ru10 websites
.fi9 websites
.net4 websites
.nl3 websites
.edu2 websites

Vulnerable Versions

Vulnerable versions are highlighted in red


Geographical Distribution

The distribution of websites across the globe that are exposed to CVE-2022-37392 through included software libraries and plugins.



References


Websites affected by CVE-2022-37392

Top websites that are affected by CVE-2022-37392. Please click on the "Contact us" button above to get more information.
DomainCountryRankContacts
********.******.com United States**,***
************.******.com United States**,***
*********.******.com United States**,***
************.org France**,***
****.***.***.edu ***,***
*****.****.******.community GB***,***
*****.****.******.community GB***,***
*****.****.******.community GB***,***
****.******.community GB***,***
***.*******.com United States***,***
See full domain list