Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2001-1556

Опубликовано: 31 дек. 2001
Источник: debian

Описание

The log files in Apache web server contain information directly supplied by clients and does not filter or quote control characters, which could allow remote attackers to hide HTTP requests and spoof source IP addresses when logs are viewed with UNIX programs such as cat, tail, and grep.

Примечания

  • documented issue in apache, unlikely to be changed

  • see http://httpd.apache.org/docs/logs.html

Связанные уязвимости

CVSS3: 3.3
redhat
больше 23 лет назад

The log files in Apache web server contain information directly supplied by clients and does not filter or quote control characters, which could allow remote attackers to hide HTTP requests and spoof source IP addresses when logs are viewed with UNIX programs such as cat, tail, and grep.

nvd
больше 23 лет назад

The log files in Apache web server contain information directly supplied by clients and does not filter or quote control characters, which could allow remote attackers to hide HTTP requests and spoof source IP addresses when logs are viewed with UNIX programs such as cat, tail, and grep.

github
больше 3 лет назад

The log files in Apache web server contain information directly supplied by clients and does not filter or quote control characters, which could allow remote attackers to hide HTTP requests and spoof source IP addresses when logs are viewed with UNIX programs such as cat, tail, and grep.