CVE-2002-0654
published 2002-09-05CVE-2002-0654: Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to determine the full pathname of the server via (1) a request for a .var file…
PriorityP423medium5CVSS 2.0
AVNACLAuNCPINAN
EXPLOIT
EPSS
58.68%
99.0th percentile
Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to determine the full pathname of the server via (1) a request for a .var file, which leaks the pathname in the resulting error message, or (2) via an error message that occurs when a script (child process) cannot be invoked.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| debian | apache2 | < apache2 2.0.40 (bookworm) | apache2 2.0.40 (bookworm) |
Detection & IOCsextracted from sources · hover to see the quote
- →Detect HTTP requests for .var files (e.g., HTTP_NOT_FOUND.html.var) targeting the Apache error document directory, which trigger full path disclosure in the error response on affected Apache 2.0.x Windows/OS2/Netware installations. ↗
- →Monitor HTTP responses from Apache 2.0 through 2.0.39 for full filesystem path strings leaked in error messages, triggered either by .var file requests or failed child process/script invocation. ↗
- ·Vulnerability is limited to Apache 2.0 through 2.0.39 running on Windows, OS2, and Netware platforms only; Unix/Linux deployments are not affected. ↗
- ·The issue is resolved in Apache 2.0.40; systems running 2.0.40 or later are not vulnerable. ↗
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv5.0MEDIUM
vendor_debian5.0MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-4qm6-3vx6-hg5q: Apache 2
ghsa_unreviewed·2022-04-30
CVE-2002-0654 [MEDIUM] GHSA-4qm6-3vx6-hg5q: Apache 2
Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to determine the full pathname of the server via (1) a request for a .var file, which leaks the pathname in the resulting error message, or (2) via an error message that occurs when a script (child process) cannot be invoked.
OSV
CVE-2002-0654: Apache 2
osv·2002-09-05·CVSS 5.0
CVE-2002-0654 [MEDIUM] CVE-2002-0654: Apache 2
Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to determine the full pathname of the server via (1) a request for a .var file, which leaks the pathname in the resulting error message, or (2) via an error message that occurs when a script (child process) cannot be invoked.
Debian
CVE-2002-0654: apache2 - Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers t...
vendor_debian·2002·CVSS 5.0
CVE-2002-0654 [MEDIUM] CVE-2002-0654: apache2 - Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers t...
Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to determine the full pathname of the server via (1) a request for a .var file, which leaks the pathname in the resulting error message, or (2) via an error message that occurs when a script (child process) cannot be invoked.
Scope: local
bookworm: resolved (fixed in 2.0.40)
bullseye: resolved (fixed in 2.0.40)
forky: resolved (fixed in 2.0.40)
sid: resolved (fixed in 2.0.40)
trixie: resolved (fixed in 2.0.40)
No detection rules found.
No writeups or analysis indexed.
http://marc.info/?l=bugtraq&m=102951160411052&w=2http://www.apache.org/dist/httpd/CHANGES_2.0http://www.iss.net/security_center/static/9875.phphttp://www.iss.net/security_center/static/9876.phphttp://www.securityfocus.com/bid/5485http://www.securityfocus.com/bid/5486https://lists.apache.org/thread.html/54a42d4b01968df1117cea77fc53d6beb931c0e05936ad02af93e9ac%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/5df9bfb86a3b054bb985a45ff9250b0332c9ecc181eec232489e7f79%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r0276683d8e1e07153fc8642618830ac0ade85b9ae0dc7b07f63bb8fc%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r2cb985de917e7da0848c440535f65a247754db8b2154a10089e4247b%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r5001ecf3d6b2bdd0b732e527654248abb264f08390045d30709a92f6%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r8828e649175df56f1f9e3919938ac7826128525426e2748f0ab62feb%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r9e8622254184645bc963a1d47c5d47f6d5a36d6f080d8d2c43b2b142%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/rd00b45b93fda4a5bd013b28587207d0e00f99f6e3308dbb6025f3b01%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3Ehttp://marc.info/?l=bugtraq&m=102951160411052&w=2http://www.apache.org/dist/httpd/CHANGES_2.0http://www.iss.net/security_center/static/9875.phphttp://www.iss.net/security_center/static/9876.phphttp://www.securityfocus.com/bid/5485http://www.securityfocus.com/bid/5486https://lists.apache.org/thread.html/54a42d4b01968df1117cea77fc53d6beb931c0e05936ad02af93e9ac%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/5df9bfb86a3b054bb985a45ff9250b0332c9ecc181eec232489e7f79%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r0276683d8e1e07153fc8642618830ac0ade85b9ae0dc7b07f63bb8fc%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r2cb985de917e7da0848c440535f65a247754db8b2154a10089e4247b%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r5001ecf3d6b2bdd0b732e527654248abb264f08390045d30709a92f6%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r8828e649175df56f1f9e3919938ac7826128525426e2748f0ab62feb%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r9e8622254184645bc963a1d47c5d47f6d5a36d6f080d8d2c43b2b142%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/rd00b45b93fda4a5bd013b28587207d0e00f99f6e3308dbb6025f3b01%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E
2002-09-05
Published