CVE-2001-0730Apache Http Server vulnerability

5 documents5 sources
Severity
5.0MEDIUMNVD
EPSS
7.8%
top 8.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 30
Latest updateApr 30

Description

split-logfile in Apache 1.3.20 allows remote attackers to overwrite arbitrary files that end in the .log extension via an HTTP request with a / (slash) in the Host: header.

CVSS vector

AV:N/AC:L/C:N/I:P/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDapache/http_server1.3.20

🔴Vulnerability Details

2
GHSA
GHSA-x7jp-wrv8-52h3: split-logfile in Apache 12022-04-30
CVEList
CVE-2001-0730: split-logfile in Apache 12002-03-09

📋Vendor Advisories

1
Red Hat
security flaw2001-09-28

💬Community

1
Bugzilla
CVE-2001-0730 security flaw2018-08-16
CVE-2001-0730 — Apache Http Server vulnerability | cvebase