Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apache http server 1.3.12 vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2000-1204
Vulnerability in the mod_vhost_alias virtual hosting module for Apache 1.3.9, 1.3.11 and 1.3.12 allows remote malicious users to obtain the source code for CGI programs if the cgi-bin directory is under the document root.
Apache Http Server 1.3.12
Apache Http Server 1.3.9
Apache Http Server 1.3.11
5
CVSSv2
CVE-2001-1342
Apache prior to 1.3.20 on Windows and OS/2 systems allows remote malicious users to cause a denial of service (GPF) via an HTTP request for a URI that contains a large number of / (slash) or other characters, which causes certain functions to dereference a null pointer.
Apache Http Server 1.3.16
Apache Http Server 1.3.15
Apache Http Server 1.3.14
Apache Http Server 1.3.18
Apache Http Server 1.3.17
Apache Http Server 1.3.12
Apache Http Server 1.3.19
5
CVSSv2
CVE-2001-0925
The default installation of Apache prior to 1.3.19 allows remote malicious users to list directories instead of the multiview index.html file via an HTTP request for a path that contains many / (slash) characters, which causes the path to be mishandled by (1) mod_negotiation, (2)...
Apache Http Server 1.3.12
Apache Http Server 1.3.17
Apache Http Server 1.3.14
Apache Http Server 1.3.11
Debian Debian Linux 2.2
4 EDB exploits
5
CVSSv2
CVE-2000-0505
The Apache 1.3.x HTTP server for Windows platforms allows remote malicious users to list directory contents by requesting a URL containing a large number of / characters.
Apache Http Server 1.3.9
Apache Http Server 1.3.11
Ibm Http Server 1.3.3
Ibm Http Server 1.3.6.2
Apache Http Server 1.3.6
Apache Http Server 1.3.12
1 EDB exploit
7.5
CVSSv2
CVE-2002-2029
PHP, when installed on Windows with Apache and ScriptAlias for /php/ set to c:/php/, allows remote malicious users to read arbitrary files and possibly execute arbitrary programs via an HTTP request for php.exe with a filename in the query string.
Apache Http Server 1.3.16
Apache Http Server 1.3.19
Apache Http Server 1.3.20
Apache Http Server 1.3.13
Apache Http Server 1.3.18
Apache Http Server 1.3.12
Apache Http Server 1.3.17
Apache Http Server 1.3.15
Apache Http Server 1.3.14
Apache Http Server 1.3.11
1 EDB exploit
5
CVSSv2
CVE-2000-0913
mod_rewrite in Apache 1.3.12 and previous versions allows remote malicious users to read arbitrary files if a RewriteRule directive is expanded to include a filename whose name contains a regular expression.
Apache Http Server 1.0.5
Apache Http Server 0.8.11
Apache Http Server 1.1.1
Apache Http Server 1.3.11
Apache Http Server 1.0.2
Apache Http Server 1.1
Apache Http Server 1.0
Apache Http Server 1.0.3
Apache Http Server 1.3.12
Apache Http Server 0.8.14
5
CVSSv2
CVE-2002-2103
Apache prior to 1.3.24, when writing to the log file, records a spoofed hostname from the reverse lookup of an IP address, even when a double-reverse lookup fails, which allows remote malicious users to hide the original source of activities.
Apache Http Server 1.3.23
Apache Http Server 1.3.16
Apache Http Server 1.3.19
Apache Http Server 1.3.20
Apache Http Server 1.3.13
Apache Http Server 1.3.18
Apache Http Server 1.3.12
Apache Http Server 1.3.17
Apache Http Server 1.3.9
Apache Http Server 1.3.15
Apache Http Server 1.3.14
Apache Http Server 1.3.22
Apache Http Server 1.3.11
4.6
CVSSv2
CVE-2002-1658
Buffer overflow in htdigest in Apache 1.3.26 and 1.3.27 may allow malicious users to execute arbitrary code via a long user argument. NOTE: since htdigest is normally only locally accessible and not setuid or setgid, there are few attack vectors which would lead to an escalation ...
Apache Http Server 1.3.23
Apache Http Server 1.3.27
Apache Http Server 1.3.1
Apache Http Server 1.3.25
Apache Http Server 1.3.19
Apache Http Server 1.3.24
Apache Http Server 1.3.20
Apache Http Server 1.3.6
Apache Http Server 1.3.4
Apache Http Server 1.3.18
Apache Http Server 1.3.12
Apache Http Server 1.3.3
Apache Http Server 1.3.17
Apache Http Server 1.3.26
Apache Http Server 1.3.9
Apache Http Server 1.3.14
Apache Http Server 1.3.22
Apache Http Server 1.3.11
7.5
CVSSv2
CVE-2003-0993
mod_access in Apache 1.3 prior to 1.3.30, when running big-endian 64-bit platforms, does not properly parse Allow/Deny rules using IP addresses without a netmask, which could allow remote malicious users to bypass intended access restrictions.
Apache Http Server 1.3.23
Apache Http Server 1.3.27
Apache Http Server 1.3.1
Apache Http Server 1.3.25
Apache Http Server 1.3.28
Apache Http Server 1.3.19
Apache Http Server 1.3.24
Apache Http Server 1.3.20
Apache Http Server 1.3.7
Apache Http Server 1.3.6
Apache Http Server 1.3.4
Apache Http Server 1.3.18
Apache Http Server 1.3
Apache Http Server 1.3.12
Apache Http Server 1.3.3
Apache Http Server 1.3.17
Apache Http Server 1.3.26
Apache Http Server 1.3.9
Apache Http Server 1.3.14
Apache Http Server 1.3.29
Apache Http Server 1.3.22
Apache Http Server 1.3.11
7.5
CVSSv2
CVE-2001-1449
The default installation of Apache prior to 1.3.19 on Mandrake Linux 7.1 up to and including 8.0 and Linux Corporate Server 1.0.1 allows remote malicious users to list the directory index of arbitrary web directories.
Apache Http Server 1.3.1
Apache Http Server 1.3.6
Apache Http Server 1.3.4
Apache Http Server 1.3.18
Mandrakesoft Mandrake Single Network Firewall 7.2
Apache Http Server 1.3
Apache Http Server 1.3.12
Apache Http Server 1.3.3
Apache Http Server 1.3.17
Apache Http Server 1.3.9
Apache Http Server 1.3.14
Apache Http Server 1.3.11
Mandrakesoft Mandrake Linux Corporate Server 1.0.1
Mandrakesoft Mandrake Linux 7.1
Mandrakesoft Mandrake Linux 7.3
Mandrakesoft Mandrake Linux 8.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-44685
CVE-2024-44053
CVE-2024-8522
CVE-2024-44059
CVE-2024-8059
CVE-2024-8503
local
open redirect
TCP
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »