Show filters
15 Total Results
Displaying 11-15 of 15
Sort by:
Attacker Value
Unknown
CVE-2005-3357
Disclosure Date: December 31, 2005 (last updated October 04, 2023)
mod_ssl in Apache 2.0 up to 2.0.55, when configured with an SSL vhost with access control and a custom error 400 error page, allows remote attackers to cause a denial of service (application crash) via a non-SSL request to an SSL port, which triggers a NULL pointer dereference.
0
Attacker Value
Unknown
CVE-2005-2728
Disclosure Date: August 30, 2005 (last updated October 04, 2023)
The byte-range filter in Apache 2.0 before 2.0.54 allows remote attackers to cause a denial of service (memory consumption) via an HTTP header with a large Range field.
0
Attacker Value
Unknown
CVE-2004-0885
Disclosure Date: November 03, 2004 (last updated February 22, 2025)
The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSuite" directive in directory or location context, allows remote clients to bypass intended restrictions by using any cipher suite that is allowed by the virtual host configuration.
0
Attacker Value
Unknown
CVE-2004-0493
Disclosure Date: August 06, 2004 (last updated February 22, 2025)
The ap_get_mime_headers_core function in Apache httpd 2.0.49 allows remote attackers to cause a denial of service (memory exhaustion), and possibly an integer signedness error leading to a heap-based buffer overflow on 64 bit systems, via long header lines with large numbers of space or tab characters.
0
Attacker Value
Unknown
CVE-2004-1834
Disclosure Date: March 20, 2004 (last updated February 22, 2025)
mod_disk_cache in Apache 2.0 through 2.0.49 stores client headers, including authentication information, on the hard disk, which could allow local users to gain sensitive information.
0