CVE-2000-0913Apache Http Server vulnerability

5 documents5 sources
Severity
5.0MEDIUMNVD
EPSS
6.2%
top 9.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 19
Latest updateApr 30

Description

mod_rewrite in Apache 1.3.12 and earlier allows remote attackers to read arbitrary files if a RewriteRule directive is expanded to include a filename whose name contains a regular expression.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDapache/http_server10 versions+9

Patches

🔴Vulnerability Details

2
GHSA
GHSA-92c3-5449-gf35: mod_rewrite in Apache 12022-04-30
CVEList
CVE-2000-0913: mod_rewrite in Apache 12001-01-22

📋Vendor Advisories

1
Red Hat
security flaw2000-09-29

💬Community

1
Bugzilla
CVE-2000-0913 security flaw2018-08-16
CVE-2000-0913 — Apache Http Server vulnerability | cvebase