Show filters
34 Total Results
Displaying 31-34 of 34
Sort by:
Attacker Value
Unknown
CVE-2005-2700
Disclosure Date: September 06, 2005 (last updated October 04, 2023)
ssl_engine_kernel.c in mod_ssl before 2.8.24, when using "SSLVerifyClient optional" in the global virtual host configuration, does not properly enforce "SSLVerifyClient require" in a per-location context, which allows remote attackers to bypass intended access restrictions.
0
Attacker Value
Unknown
CVE-2004-1811
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
The SSL HTTP Server in HP Web-enabled Management Software 5.0 through 5.92, with anonymous access enabled, allows remote attackers to compromise the trusted certificates by uploading their own certificates.
0
Attacker Value
Unknown
CVE-2004-0809
Disclosure Date: September 16, 2004 (last updated October 04, 2023)
The mod_dav module in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service (child process crash) via a certain sequence of LOCK requests for a location that allows WebDAV authoring access.
0
Attacker Value
Unknown
CVE-2004-1082
Disclosure Date: February 03, 2004 (last updated February 22, 2025)
mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remote attackers to replay credentials.
0