|
241
|
-
5.0
|
MEDIUM
|
Apache 2.0.42 allows remote attackers to view the source code of a CGI script via a POST request to a directory with both WebDAV and CGI enabled.
|
NVD-CWE-Other
|
CVE-2002-1156
|
cpe:2.3:a:apache:http_server:2.0.42:*
|
|
|
|
|
2023-11-7 10:55
2002-10-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
242
|
-
5.0
|
MEDIUM
|
mod_dav in Apache before 2.0.42 does not properly handle versioning hooks, which may allow remote attackers to kill a child process via a null dereference and cause a denial of service (CPU consumpti…
|
NVD-CWE-Other
|
CVE-2002-1593
|
cpe:2.3:a:apache:http_server:2.0:* cpe:2.3:a:apache:http_server:2.0.41:* cpe:2.3:a:apache:http_server:2.0.40:*
|
|
|
|
|
2023-11-7 10:56
2002-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
243
|
-
5.0
|
MEDIUM
|
Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to determine the full pathname of the server via (1) a request for a .var file, which leaks the pathname in the resultin…
|
NVD-CWE-Other
|
CVE-2002-0654
|
cpe:2.3:a:apache:http_server:2.0:* cpe:2.3:a:apache:http_server:2.0.39:* cpe:2.3:a:apache:http_server:2.0.38:*
|
|
|
|
|
2023-11-7 10:55
2002-09-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
244
|
-
7.5
|
HIGH
|
Directory traversal vulnerability in Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to read arbitrary files and execute commands via .. (dot dot) sequences containing …
|
NVD-CWE-Other
|
CVE-2002-0661
|
cpe:2.3:a:apache:http_server:2.0:* cpe:2.3:a:apache:http_server:2.0.39:* cpe:2.3:a:apache:http_server:2.0.38:*
|
|
|
|
|
2023-11-7 10:55
2002-08-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
245
|
-
7.5
|
HIGH
|
Apache 1.3 through 1.3.24, and Apache 2.0 through 2.0.36, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a chunk-encoded HTTP request that causes Apache …
|
NVD-CWE-noinfo
|
CVE-2002-0392
|
cpe:2.3:a:apache:http_server:*:*
|
2.0.0 1.2.2
|
2.0.36 1.3.24
|
|
|
2023-11-7 10:55
2002-07-3
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246
|
-
5.0
|
MEDIUM
|
PHP, when installed with Apache and configured to search for index.php as a default web page, allows remote attackers to obtain the full pathname of the server via the HTTP OPTIONS method, which reve…
|
NVD-CWE-Other
|
CVE-2002-0240
|
cpe:2.3:a:apache:http_server:2.0.28:beta
|
|
|
|
|
2016-10-18 11:17
2002-05-29
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247
|
-
5.0
|
MEDIUM
|
PHP for Windows, when installed on Apache 2.0.28 beta as a standalone CGI module, allows remote attackers to obtain the physical path of the php.exe via a request with malformed arguments such as /12…
|
NVD-CWE-Other
|
CVE-2002-0249
|
cpe:2.3:a:apache:http_server:2.0.28:beta
|
|
|
|
|
2016-10-18 11:17
2002-05-29
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248
|
-
7.5
|
HIGH
|
Cross-site scripting vulnerability in auction.pl of MakeBid Auction Deluxe 3.30 allows remote attackers to obtain information from other users via the form fields (1) TITLE, (2) DESCTIT, (3) DESC, (4…
|
NVD-CWE-Other
|
CVE-2002-0257
|
cpe:2.3:a:apache:http_server:1.3.22:* cpe:2.3:a:apache:http_server:1.3.20:* cpe:2.3:a:apache:http_server:1.3.19:*…
|
|
|
|
|
2016-10-18 11:17
2002-05-29
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249
|
-
5.0
|
MEDIUM
|
The ap_log_rerror function in Apache 2.0 through 2.035, when a CGI application encounters an error, sends error messages to the client that include the full path for the server, which allows remote a…
|
NVD-CWE-Other
|
CVE-2002-1592
|
cpe:2.3:a:apache:http_server:2.0:* cpe:2.3:a:apache:http_server:2.0.35:* cpe:2.3:a:apache:http_server:2.0.32:*
|
|
|
|
|
2023-11-7 10:56
2002-05-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250
|
-
7.5
|
HIGH
|
Apache for Win32 before 1.3.24, and 2.0.x before 2.0.34-beta, allows remote attackers to execute arbitrary commands via shell metacharacters (a | pipe character) provided as arguments to batch (.bat)…
|
CWE-78
OS Command
|
CVE-2002-0061
|
cpe:2.3:a:apache:http_server:*:*
|
2.0.0
|
|
|
1.3.24 2.0.34
|
2024-01-27 05:01
2002-03-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|