CVE-2001-0108Mandrake Linux vulnerability

6 documents6 sources
Severity
5.0MEDIUMNVD
EPSS
0.4%
top 41.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 12
Latest updateApr 30

Description

PHP Apache module 4.0.4 and earlier allows remote attackers to bypass .htaccess access restrictions via a malformed HTTP request on an unrestricted page that causes PHP to use those access controls on the next page that is requested.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

NVDphp/php4 versions+3

Patches

🔴Vulnerability Details

2
GHSA
GHSA-j2hw-525w-j8q2: PHP Apache module 42022-04-30
CVEList
CVE-2001-0108: PHP Apache module 42001-09-18

💥Exploits & PoCs

1
Exploit-DB
HP-UX 11.0 - SWVerify Buffer Overflow2001-09-03

📋Vendor Advisories

1
Red Hat
security flaw2001-01-12

💬Community

1
Bugzilla
CVE-2001-0108 security flaw2018-08-16