CVE-2002-0185

5 documents5 sources
Severity
7.5HIGH
EPSS
4.0%
top 11.56%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 16
Latest updateApr 30

Description

mod_python version 2.7.6 and earlier allows a module indirectly imported by a published module to then be accessed via the publisher, which allows remote attackers to call possibly dangerous functions from the imported module.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

ā–¶NVDapache/mod_python2.7.6

šŸ”“Vulnerability Details

2
GHSA
GHSA-f4rv-mm84-59gg: mod_python version 2↗2022-04-30
ā–¶
CVEList
CVE-2002-0185: mod_python version 2↗2003-04-02
ā–¶

šŸ“‹Vendor Advisories

1
Red Hat
security flaw↗2002-04-05
ā–¶

šŸ’¬Community

1
Bugzilla
CVE-2002-0185 security flaw↗2018-08-16
ā–¶
CVE-2002-0185 (HIGH CVSS 7.5) | mod_python version 2.7.6 and earlie | cvebase.io