5

CVE-2001-1342

Apache before 1.3.20 on Windows and OS/2 systems allows remote attackers to cause a denial of service (GPF) via an HTTP request for a URI that contains a large number of / (slash) or other characters, which causes certain functions to dereference a null pointer.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
ApacheHTTP Server Version1.3.12 Editionwin32
ApacheHTTP Server Version1.3.14 Editionwin32
ApacheHTTP Server Version1.3.15 Editionwin32
ApacheHTTP Server Version1.3.16 Editionwin32
ApacheHTTP Server Version1.3.17 Editionwin32
ApacheHTTP Server Version1.3.18 Editionwin32
ApacheHTTP Server Version1.3.19 Editionwin32
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 10.15% 0.929
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P