'httpoxy' Application Vulnerability

Posted: Fri Aug 05, 2016 7:53 pm
by thomasmatthes
When the statement "LoadModule headers_module" istn't part of the httpd.conf is there a httpoxy applicaton vulnerability at all?

Or have i (to mitigate the issue) still to load the headers_module and still to block the requests with "RequestHeader unset Proxy early"

Thanks for your help.

Re: 'httpoxy' Application Vulnerability

Posted: Tue Aug 30, 2016 11:54 am
by thomasmatthes
no ideas?