Show filters
486 Total Results
Displaying 391-400 of 486
Sort by:
Attacker Value
Unknown
CVE-2003-0132
Disclosure Date: April 11, 2003 (last updated February 22, 2025)
A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via large chunks of linefeed characters, which causes Apache to allocate 80 bytes for each linefeed.
0
Attacker Value
Unknown
CVE-2003-0083
Disclosure Date: April 02, 2003 (last updated February 22, 2025)
Apache 1.3 before 1.3.25 and Apache 2.0 before version 2.0.46 does not filter terminal escape sequences from its access logs, which could make it easier for attackers to insert those sequences into terminal emulators containing vulnerabilities related to escape sequences, a different vulnerability than CVE-2003-0020.
0
Attacker Value
Unknown
CVE-2003-0020
Disclosure Date: March 18, 2003 (last updated February 22, 2025)
Apache does not filter terminal escape sequences from its error logs, which could make it easier for attackers to insert those sequences into terminal emulators containing vulnerabilities related to escape sequences.
0
Attacker Value
Unknown
CVE-2003-0016
Disclosure Date: February 07, 2003 (last updated February 22, 2025)
Apache before 2.0.44, when running on unpatched Windows 9x and Me operating systems, allows remote attackers to cause a denial of service or execute arbitrary code via an HTTP request containing MS-DOS device names.
0
Attacker Value
Unknown
CVE-2003-0017
Disclosure Date: February 07, 2003 (last updated February 22, 2025)
Apache 2.0 before 2.0.44 on Windows platforms allows remote attackers to obtain certain files via an HTTP request that ends in certain illegal characters such as ">", which causes a different filename to be processed and served.
0
Attacker Value
Unknown
CVE-2002-1850
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
mod_cgi in Apache 2.0.39 and 2.0.40 allows local users and possibly remote attackers to cause a denial of service (hang and memory consumption) by causing a CGI script to send a large amount of data to stderr, which results in a read/write deadlock between httpd and the CGI script.
0
Attacker Value
Unknown
CVE-2002-1822
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
IBM HTTP Server 1.0 on AS/400 allows remote attackers to obtain the path to the web root directory and other sensitive information, which is leaked in an error mesage when a request is made for a non-existent Java Server Page (JSP).
0
Attacker Value
Unknown
CVE-2002-1823
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Buffer overflow in the HttpGetRequest function in Zeroo HTTP server 1.5 allows remote attackers to execute arbitrary code via a long HTTP request.
0
Attacker Value
Unknown
CVE-2002-2012
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Unknown vulnerability in Apache 1.3.19 running on HP Secure OS for Linux 1.0 allows remote attackers to cause "unexpected results" via an HTTP request.
0
Attacker Value
Unknown
CVE-2002-2272
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Tomcat 4.0 through 4.1.12, using mod_jk 1.2.1 module on Apache 1.3 through 1.3.27, allows remote attackers to cause a denial of service (desynchronized communications) via an HTTP GET request with a Transfer-Encoding chunked field with invalid values.
0