7.5

CVE-2003-1171

Exploit
Heap-based buffer overflow in the sec_filter_out function in mod_security 1.7RC1 through 1.7.1 in Apache 2 allows remote attackers to execute arbitrary code via a server side script that sends a large amount of data.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mod SecurityMod Security Version1.7
Mod SecurityMod Security Version1.7.1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.63% 0.905
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://adsystems.com.pl/adg-mod_security171.txt
http://secunia.com/advisories/10085
Patch
Vendor Advisory
http://securitytracker.com/id?1008025
Patch
Exploit
http://www.modsecurity.org/download/CHANGES
http://www.securityfocus.com/archive/1/342767
Patch
http://www.securityfocus.com/bid/8919
Patch
https://exchange.xforce.ibmcloud.com/vulnerabilities/13543