Show filters
14 Total Results
Displaying 11-14 of 14
Sort by:
Attacker Value
Unknown

CVE-2005-3357

Disclosure Date: December 31, 2005 (last updated October 04, 2023)
mod_ssl in Apache 2.0 up to 2.0.55, when configured with an SSL vhost with access control and a custom error 400 error page, allows remote attackers to cause a denial of service (application crash) via a non-SSL request to an SSL port, which triggers a NULL pointer dereference.
0
Attacker Value
Unknown

CVE-2005-2728

Disclosure Date: August 30, 2005 (last updated October 04, 2023)
The byte-range filter in Apache 2.0 before 2.0.54 allows remote attackers to cause a denial of service (memory consumption) via an HTTP header with a large Range field.
0
Attacker Value
Unknown

CVE-2004-0811

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Unknown vulnerability in Apache 2.0.51 prevents "the merging of the Satisfy directive," which could allow attackers to obtain access to restricted resources contrary to the specified authentication configuration.
0
Attacker Value
Unknown

CVE-2004-0885

Disclosure Date: November 03, 2004 (last updated February 22, 2025)
The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSuite" directive in directory or location context, allows remote clients to bypass intended restrictions by using any cipher suite that is allowed by the virtual host configuration.
0