5

CVE-2001-1342

Apache before 1.3.20 on Windows and OS/2 systems allows remote attackers to cause a denial of service (GPF) via an HTTP request for a URI that contains a large number of / (slash) or other characters, which causes certain functions to dereference a null pointer.

Data is provided by the National Vulnerability Database (NVD)
ApacheHTTP Server Version1.3.12 Editionwin32
ApacheHTTP Server Version1.3.14 Editionwin32
ApacheHTTP Server Version1.3.15 Editionwin32
ApacheHTTP Server Version1.3.16 Editionwin32
ApacheHTTP Server Version1.3.17 Editionwin32
ApacheHTTP Server Version1.3.18 Editionwin32
ApacheHTTP Server Version1.3.19 Editionwin32
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 10.15% 0.929
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P