Apache Http Server vulnerabilities
323 known vulnerabilities affecting apache/http_server.
Total CVEs
323
CISA KEV
5
actively exploited
Public exploits
70
Exploited in wild
22
Severity breakdown
CRITICAL38HIGH107MEDIUM165LOW13
Vulnerabilities
Page 14 of 17
CVE-2012-3502P4MEDIUMCVSS 4.3v2.4.0v2.4.1+1 more2012-08-22
CVE-2012-3502 [MEDIUM] CWE-200 CVE-2012-3502: The proxy functionality in (1) mod_proxy_ajp.c in the mod_proxy_ajp module and (2) mod_proxy_http.c
The proxy functionality in (1) mod_proxy_ajp.c in the mod_proxy_ajp module and (2) mod_proxy_http.c in the mod_proxy_http module in the Apache HTTP Server 2.4.x before 2.4.3 does not properly determine the situations that require closing a back-end connection, which allows remote attackers to obtain sensitive information in opportunistic circumstances
nvd
CVE-2007-6420P4MEDIUMCVSS 4.3v2.2.0v2.2.2+5 more2008-01-12
CVE-2007-6420 [MEDIUM] CWE-352 CVE-2007-6420: Cross-site request forgery (CSRF) vulnerability in the balancer-manager in mod_proxy_balancer for Ap
Cross-site request forgery (CSRF) vulnerability in the balancer-manager in mod_proxy_balancer for Apache HTTP Server 2.2.x allows remote attackers to gain privileges via unspecified vectors.
nvd
CVE-2007-3847P4MEDIUMCVSS 5.0≥ 2.0.35, < 2.0.61≥ 2.2.0, < 2.2.62007-08-23
CVE-2007-3847 [MEDIUM] CWE-125 CVE-2007-3847: The date handling code in modules/proxy/proxy_util.c (mod_proxy) in Apache 2.3.0, when using a threa
The date handling code in modules/proxy/proxy_util.c (mod_proxy) in Apache 2.3.0, when using a threaded MPM, allows remote origin servers to cause a denial of service (caching forward proxy process crash) via crafted date headers that trigger a buffer over-read.
nvd
CVE-2008-2364P4MEDIUMCVSS 5.0≥ 2.0.35, < 2.0.64≥ 2.2.0, < 2.2.92008-06-13
CVE-2008-2364 [MEDIUM] CWE-770 CVE-2008-2364: The ap_proxy_http_process_response function in mod_proxy_http.c in the mod_proxy module in the Apach
The ap_proxy_http_process_response function in mod_proxy_http.c in the mod_proxy module in the Apache HTTP Server 2.0.63 and 2.2.8 does not limit the number of forwarded interim responses, which allows remote HTTP servers to cause a denial of service (memory consumption) via a large number of interim responses.
nvd
CVE-2019-0197P4MEDIUMCVSS 4.2≥ 2.4.34, ≤ 2.4.382019-06-11
CVE-2019-0197 [MEDIUM] CWE-444 CVE-2019-0197: A vulnerability was found in Apache HTTP Server 2.4.34 to 2.4.38. When HTTP/2 was enabled for a http
A vulnerability was found in Apache HTTP Server 2.4.34 to 2.4.38. When HTTP/2 was enabled for a http: host or H2Upgrade was enabled for h2 on a https: host, an Upgrade request from http/1.1 to http/2 that was not the first request on a connection could lead to a misconfiguration and crash. Server that never enabled the h2 protocol or that only enabled
nvd
CVE-2000-1206P4MEDIUMCVSS 5.0v1.3.9v1.3.101999-08-20
CVE-2000-1206 [MEDIUM] CVE-2000-1206: Vulnerability in Apache httpd before 1.3.11, when configured for mass virtual hosting using mod_rewr
Vulnerability in Apache httpd before 1.3.11, when configured for mass virtual hosting using mod_rewrite, or mod_vhost_alias in Apache 1.3.9, allows remote attackers to retrieve arbitrary files.
nvd
CVE-1999-1293P4CRITICALCVSS 10.0≤ 1.2.51999-12-31
CVE-1999-1293 [CRITICAL] CVE-1999-1293: mod_proxy in Apache 1.2.5 and earlier allows remote attackers to cause a denial of service via malfo
mod_proxy in Apache 1.2.5 and earlier allows remote attackers to cause a denial of service via malformed FTP commands, which causes Apache to dump core.
nvd
CVE-2004-0809P4MEDIUMCVSS 5.0≥ 2.0.35, < 2.0.512004-09-16
CVE-2004-0809 [MEDIUM] CVE-2004-0809: The mod_dav module in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service
The mod_dav module in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service (child process crash) via a certain sequence of LOCK requests for a location that allows WebDAV authoring access.
nvd
CVE-2005-1268P4MEDIUMCVSS 5.0≥ 2.0.35, ≤ 2.0.542005-08-05
CVE-2005-1268 [MEDIUM] CWE-193 CVE-2005-1268: Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache, w
Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache, when configured to use a CRL, allows remote attackers to cause a denial of service (child process crash) via a CRL that causes a buffer overflow of one null byte.
nvd
CVE-2026-44119P4MEDIUMCVSS 5.5≥ 2.4.0, < 2.4.682026-06-08
CVE-2026-44119 [MEDIUM] CWE-269 CVE-2026-44119: Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .h
Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user.
This issue affects Apache HTTP Server: from through 2.4.67.
Users are recommended to upgrade to version 2.4.68, which fixes the issue.
nvd
CVE-2007-1863P4MEDIUMCVSS 5.0≥ 2.0.37, < 2.0.61≥ 2.2.0, < 2.2.62007-06-27
CVE-2007-1863 [MEDIUM] CVE-2007-1863: cache_util.c in the mod_cache module in Apache HTTP Server (httpd), when caching is enabled and a th
cache_util.c in the mod_cache module in Apache HTTP Server (httpd), when caching is enabled and a threaded Multi-Processing Module (MPM) is used, allows remote attackers to cause a denial of service (child processing handler crash) via a request with the (1) s-maxage, (2) max-age, (3) min-fresh, or (4) max-stale Cache-Control headers without a value.
nvd
CVE-2012-0883P4MEDIUMCVSS 6.9≥ 2.2.0, < 2.2.23v2.4.12012-04-18
CVE-2012-0883 [MEDIUM] CVE-2012-0883: envvars (aka envvars-std) in the Apache HTTP Server before 2.4.2 places a zero-length directory name
envvars (aka envvars-std) in the Apache HTTP Server before 2.4.2 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse DSO in the current working directory during execution of apachectl.
nvd
CVE-2000-1204P4MEDIUMCVSS 5.0v1.3.9v1.3.11+1 more2000-10-13
CVE-2000-1204 [MEDIUM] CVE-2000-1204: Vulnerability in the mod_vhost_alias virtual hosting module for Apache 1.3.9, 1.3.11 and 1.3.12 allo
Vulnerability in the mod_vhost_alias virtual hosting module for Apache 1.3.9, 1.3.11 and 1.3.12 allows remote attackers to obtain the source code for CGI programs if the cgi-bin directory is under the document root.
nvd
CVE-2008-0456P4LOWCVSS 2.6≥ 2.2.0, < 2.2.122008-01-25
CVE-2008-0456 [LOW] CWE-74 CVE-2008-0456: CRLF injection vulnerability in the mod_negotiation module in the Apache HTTP Server 2.2.6 and earli
CRLF injection vulnerability in the mod_negotiation module in the Apache HTTP Server 2.2.6 and earlier in the 2.2.x series, 2.0.61 and earlier in the 2.0.x series, and 1.3.39 and earlier in the 1.3.x series allows remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks by uploading a file with a multi-line n
nvd
CVE-2009-0023P4MEDIUMCVSS 4.3≥ 2.2.0, < 2.2.122009-06-08
CVE-2009-0023 [MEDIUM] CWE-119 CVE-2009-0023: The apr_strmatch_precompile function in strmatch/apr_strmatch.c in Apache APR-util before 1.3.5 allo
The apr_strmatch_precompile function in strmatch/apr_strmatch.c in Apache APR-util before 1.3.5 allows remote attackers to cause a denial of service (daemon crash) via crafted input involving (1) a .htaccess file used with the Apache HTTP Server, (2) the SVNMasterURI directive in the mod_dav_svn module in the Apache HTTP Server, (3) the mod_apreq2 mod
nvd
CVE-2012-2687P4LOWCVSS 2.6v2.2.0v2.2.1+23 more2012-08-22
CVE-2012-2687 [LOW] CWE-79 CVE-2012-2687: Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotia
Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction o
nvd
CVE-2011-1928P4MEDIUMCVSS 4.3v2.2.182011-05-24
CVE-2011-1928 [MEDIUM] CVE-2011-1928: The fnmatch implementation in apr_fnmatch.c in the Apache Portable Runtime (APR) library 1.4.3 and 1
The fnmatch implementation in apr_fnmatch.c in the Apache Portable Runtime (APR) library 1.4.3 and 1.4.4, and the Apache HTTP Server 2.2.18, allows remote attackers to cause a denial of service (infinite loop) via a URI that does not match unspecified types of wildcard patterns, as demonstrated by attacks against mod_autoindex in httpd when a /*/WEB-INF/ conf
nvd
CVE-2007-1862P4MEDIUMCVSS 5.0v2.2.42007-06-04
CVE-2007-1862 [MEDIUM] CVE-2007-1862: The recall_headers function in mod_mem_cache in Apache 2.2.4 does not properly copy all levels of he
The recall_headers function in mod_mem_cache in Apache 2.2.4 does not properly copy all levels of header data, which can cause Apache to return HTTP headers containing previously used data, which could be used by remote attackers to obtain potentially sensitive information.
nvd
CVE-2002-0257P4HIGHCVSS 7.5v1.3.17v1.3.18+3 more2002-05-29
CVE-2002-0257 [HIGH] CVE-2002-0257: Cross-site scripting vulnerability in auction.pl of MakeBid Auction Deluxe 3.30 allows remote attack
Cross-site scripting vulnerability in auction.pl of MakeBid Auction Deluxe 3.30 allows remote attackers to obtain information from other users via the form fields (1) TITLE, (2) DESCTIT, (3) DESC, (4) searchstring, (5) ALIAS, (6) EMAIL, (7) ADDRESS1, (8) ADDRESS2, (9) ADDRESS3, (10) PHONE1, (11) PHONE2, (12) PHONE3, or (13) PHONE4.
nvd
CVE-1999-0071P4HIGHCVSS 7.5v1.1.11997-09-01
CVE-1999-0071 [HIGH] CVE-1999-0071: Apache httpd cookie buffer overflow for versions 1.1.1 and earlier.
Apache httpd cookie buffer overflow for versions 1.1.1 and earlier.
nvd