Security News

Cybersecurity news aggregator

🔓
HIGH Vulnerabilities BSI Germany

[NEU] [hoch] HTTP/2-Implementierungen: Schwachstelle ermöglicht Denial of Service

A high-severity vulnerability (CVSS 7.5) in multiple HTTP/2 implementations allows a remote, anonymous attacker to cause a Denial of Service. The flaw affects major web servers including Apache HTTP Server, NGINX, and Microsoft Internet Information Services (IIS) on Linux, UNIX, and Windows platforms. Mitigations are available, but the article does not specify affected version ranges, fixed versions, or specific workarounds.
Read Full Article →

[WID-SEC-2026-1791] HTTP/2-Implementierungen: Schwachstelle ermöglicht Denial of Service CVSS Base Score 7.5 (hoch) CVSS Temporal Score 7.0 (hoch) Remoteangriff ja Datum 04.06.2026 Stand 05.06.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux UNIX Windows Produktbeschreibung Apache ist ein Webserver für verschiedene Plattformen. NGINX ist eine Webserver-, Reverse Proxy- und E-Mail-Proxy Software. Microsoft Internet Information Services (IIS) stellt die Internet Informationsdienste (WWW-Server, FTP-Server, NNTP-Dienst und SMTP-Dienst) für die Microsoft Betriebssysteme zur Verfügung. Produkte 04.06.2026 Microsoft Internet Information Services NGINX NGINX Apache HTTP Server SUSE Linux Amazon Linux 2 Debian Linux Angriff Angriff Ein entfernter, anonymer Angreifer kann eine Schwachstelle in verschiedenen HTTP/2-Implementierungen ausnutzen, um einen Denial of Service Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben

Share this article